@misc{rfc9936, series = {Request for Comments}, number = 9936, howpublished = {RFC 9936}, publisher = {RFC Editor}, doi = {10.17487/RFC9936}, url = {https://www.rfc-editor.org/info/rfc9936/}, author = {J. Prat and M. Ounsworth and D. Van Geest}, title = {{Use of ML-KEM in the Cryptographic Message Syntax (CMS)}}, pagetotal = 18, year = 2026, month = mar, abstract = {Module-Lattice-Based Key-Encapsulation Mechanism (ML-KEM) is a quantum-resistant Key Encapsulation Mechanism (KEM). Three parameter sets for the ML-KEM algorithm are specified by the US National Institute of Standards and Technology (NIST) in FIPS 203. In order of increasing security strength (and decreasing performance), these parameter sets are ML-KEM-512, ML-KEM-768, and ML-KEM-1024. This document specifies the conventions for using ML-KEM with the Cryptographic Message Syntax (CMS) using the KEMRecipientInfo structure defined in "Using Key Encapsulation Mechanism (KEM) Algorithms in the Cryptographic Message Syntax (CMS)" (RFC 9629).}, }