Post-Quantum Cryptography Transition Planner

Inventory quantum-vulnerable crypto and map to NIST FIPS 203/204/205 standards.

Total Assets

0

Quantum-Vulnerable

0

Quantum-Safe

0

Add Cryptographic Asset

NIST PQC Standards (FIPS 203/204/205)

FIPS 203ML-KEM

Module-Lattice-Based Key-Encapsulation Mechanism. Replaces RSA and ECDH for key establishment.

Use: Key exchange / encapsulation

FIPS 204ML-DSA

Module-Lattice-Based Digital Signature Algorithm. Replaces RSA and ECDSA for signatures.

Use: Digital signatures

FIPS 205SLH-DSA

Stateless Hash-Based Digital Signature Algorithm. Hash-based fallback with no lattice assumption.

Use: Digital signatures (conservative)

Migration Roadmap (NIST IR 8547)

1
Phase 1: Discovery & Inventory2025–2026

Identify and inventory all quantum-vulnerable cryptographic assets across the enterprise.

2
Phase 2: Pilot & Testing2026–2028

Pilot PQC algorithms (ML-KEM, ML-DSA) in non-production environments. Test interoperability and performance.

3
Phase 3: Implementation2028–2030

Deploy PQC algorithms in production systems. Implement hybrid (classical + PQC) transition mode.

4
Phase 4: Full Transition2030–2035

Complete migration to PQC standards. Deprecate and remove all quantum-vulnerable algorithms.

5
Milestone: NIST Deprecation2030

NIST deprecation of quantum-vulnerable algorithms. All new systems must use PQC.

6
Milestone: NIST Disallowance2035

NIST disallowance of quantum-vulnerable algorithms. Full PQC migration required for compliance.