@techreport{rosomakho-tls-ecdhe-mlkem512-00, number = {draft-rosomakho-tls-ecdhe-mlkem512-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-rosomakho-tls-ecdhe-mlkem512/00/}, author = {Yaroslav Rosomakho}, title = {{Post-quantum hybrid ECDHE-MLKEM512 Key Agreement for TLSv1.3}}, pagetotal = 9, year = 2026, month = jul, day = 5, abstract = {This document defines two post-quantum hybrid key exchange groups for TLS 1.3 that combine ML-KEM-512 with ECDHE: MLKEM512X25519 and SecP256r1MLKEM512. These groups provide lower-overhead hybrid key exchange options for deployments where ClientHello size, fragmentation risk, constrained-device performance, or compatibility with existing network infrastructure are important considerations. The groups defined in this document are intended for use with TLS 1.3 and DTLS 1.3 and follow the hybrid key exchange construction used by ECDHE-MLKEM key agreement for TLS 1.3.}, }