go/doc/next/6-stdlib/99-minor/crypto/tls/71206.md
Filippo Valsorda 1768cb40b8 crypto/tls: add SecP256r1/SecP384r1MLKEM1024 hybrid post-quantum key exchanges
Fixes #71206

Change-Id: If3cf75261c56828b87ae6805bd2913f56a6a6964
Reviewed-on: https://go-review.googlesource.com/c/go/+/722140
Auto-Submit: Filippo Valsorda <filippo@golang.org>
Reviewed-by: Cherry Mui <cherryyz@google.com>
Reviewed-by: Roland Shoemaker <roland@golang.org>
LUCI-TryBot-Result: Go LUCI <golang-scoped@luci-project-accounts.iam.gserviceaccount.com>
2025-11-25 17:25:00 -08:00

215 B

The hybrid [SecP256r1MLKEM768] and [SecP384r1MLKEM1024] post-quantum key exchanges are now enabled by default. They can be disabled by setting [Config.CurvePreferences] or with the tlssecpmlkem=0 GODEBUG setting.