%% You should probably cite draft-ietf-ipsecme-hybrid-kem-ikev2-frodo instead of this I-D. @techreport{wang-ipsecme-hybrid-kem-ikev2-frodo-00, number = {draft-wang-ipsecme-hybrid-kem-ikev2-frodo-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-wang-ipsecme-hybrid-kem-ikev2-frodo/00/}, author = {Guilin WANG and Leonie Bruckert and Valery Smyslov}, title = {{Post-quantum Hybrid Key Exchange in the IKEv2 with FrodoKEM}}, pagetotal = 11, year = , month = , day = , abstract = {Multiple key exchanges in the Internet Key Exchange Protocol Version 2 (IKEv2) {[}RFC9370{]} specifies a framework that supports multiple key encapsulation mechanisms (KEMs) in the Internet Key Exchange Protocol Version 2 (IKEv2) by allowing up to 7 layers of additional KEMs to derive the final shared secret keys for IPsec protocols. The primary goal is to mitigate the “harvest now and decrypt later” threat posed by cryptanalytically-relevant quantum computers. For this purpose, usually one or more post-quantum KEMs are performed in addition to the traditional (EC)DH key exchange. This draft specifies how the post-quantum KEM FrodoKEM is instantiated in IKEv2 as an additional key exchange mechanism. {[}EDNOTE: IANA KE code points for FrodoKEM may need to be assigned, as the code points for ML-KEM has been considered in {[}I-D.KR24{]}. {]}}, }