Rendered at 10:29:24 GMT+0000 (Coordinated Universal Time) with Cloudflare Workers.
eqvinox 5 hours ago [-]
From having had my own prior interactions with you, I am entirely unsurprised that you're getting some cold shoulder due to other people's experiences with you.
As far as I can tell you're great at cryptography code. You've gotten better at the social parts of collaborative software engineering, but there's still room to grow.
westurner 2 days ago [-]
Isn't there still need for non- or post- FIPS-140 -like cipher restrictions in non FIPS-140 environments?
How much code is needed to implement Classical+PQ (Hybrid PQ) or PQ-only (Only PQ) cipher selection restrictions just?
FWIU, with golang:
# This allows X25519MLKEM768 (Hybrid PQ)
GODEBUG=fips140=on
# This prevents any PQ ciphers from being used:
GODEBUG=fips140=only
tlsref needs to be revised to specify PQ cipher lists.
twiss 1 hours ago [-]
FIPS-140 doesn't yet require PQC, nor does Go in FIPS mode (or any other mode).
As far as I can tell you're great at cryptography code. You've gotten better at the social parts of collaborative software engineering, but there's still room to grow.
How much code is needed to implement Classical+PQ (Hybrid PQ) or PQ-only (Only PQ) cipher selection restrictions just?
FWIU, with golang:
tlsref needs to be revised to specify PQ cipher lists.So, if you only want PQC, you'll have to do that manually either way. But, I think you'll find many servers aren't ready for that: https://www.netmeister.org/blog/pqc-use-2026-09.html