Secure Domain Name System (DNS) Deployment 2026 Guide [pdf]

(nvlpubs.nist.gov)

45 points | by XzetaU8 3 hours ago

1 comments

  • bob1029 35 minutes ago
    > ECC algorithms with smaller key sizes would be more vulnerable to a quantum attack, as it would require a currently theoretical quantum computer with fewer qubits than would be required for an RSA key with the same cryptographic strength [25].

    This is what keeps me skeptical about ECC. RSA is really chunky, and maybe that's a fundamental advantage from an information theory perspective. Compromising on the crypto scheme because we can't fit inside UDP seems like a cursed path.

    [25]: https://arxiv.org/abs/1706.06752