Skip to content

Commit 209a2e9

Browse files
authored
[SSL] Update pqc-support.mdx (#23622)
* add Traefik * note that OpenSSL 3.5 and Caddy enable X25519MLKEM768 by default * clarify that Zig doesn't have a TLS server
1 parent 2e0abc6 commit 209a2e9

File tree

1 file changed

+8
-5
lines changed

1 file changed

+8
-5
lines changed

src/content/docs/ssl/post-quantum-cryptography/pqc-support.mdx

Lines changed: 8 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -21,19 +21,22 @@ The list below is for reference only. Responsibility for third-party software li
2121
- Default for recent [Opera](https://opera.com) and [Brave](https://brave.com)
2222
- Cloudflare's [fork of Go](https://github.com/cloudflare/go)
2323
- Default for [Go 1.24+](https://go.dev/doc/go1.24#cryptotlspkgcryptotls)
24-
- [OpenSSL 3.5.0+](https://www.openssl.org/)
24+
- Default for [OpenSSL 3.5.0+](https://www.openssl.org/)
2525
- [BoringSSL](https://boringssl.googlesource.com/boringssl/)
2626
- [GnuTLS](https://www.gnutls.org)
2727
- 3.8.9+ compiled with leancrypto 1.2.0+
2828
- 3.8.8-3.8.9 compiled with liboqs 0.11.0+
2929
- [rustls 0.23.22+](https://crates.io/crates/rustls)
3030
- Default for [rpxy 0.9.4+](https://github.com/junkurihara/rust-rpxy)
31-
- [NGINX](https://github.com/nginx/nginx) compiled with OpenSSL 3.5+ ([instructions](https://github.com/nginx/nginx/issues/288))
31+
- Default for [NGINX](https://github.com/nginx/nginx) compiled with OpenSSL 3.5+ ([instructions](https://github.com/nginx/nginx/issues/288))
3232
- [Open Quantum Safe](https://openquantumsafe.org/)
3333
- C library: liboqs 0.10.0+
3434
- OpenSSL provider: oqs-provider 0.7.0+
35-
- [Zig 0.14.0+](https://ziglang.org/)
36-
- [Caddy HTTP server 2.10.0+](https://caddyserver.com/)
35+
- [Zig 0.14.0+](https://ziglang.org/) (client)
36+
- Default for [Caddy HTTP server 2.10.0+](https://caddyserver.com/)
37+
- [Traefik](https://traefik.io/traefik/)
38+
- Default for 3.4.2+, 2.11.26+ ([commit](https://github.com/traefik/traefik/commit/cd16321dd9c25bb47a2e9417b2a4a75959be63d0))
39+
- Configurable with `curvePreferences` in [3.5.0-rc.1+](https://github.com/traefik/traefik/releases/tag/v3.5.0-rc1)
3740
- [Botan C++ library 3.7.0+](https://botan.randombit.net/)
3841

3942
## X25519Kyber768Draft00
@@ -54,6 +57,6 @@ The list below is for reference only. Responsibility for third-party software li
5457
- [Open Quantum Safe](https://openquantumsafe.org/)
5558
- C library: liboqs 0.5.0+
5659
- OpenSSL provider: oqs-provider 0.5.0-0.8.0
57-
- [Zig 0.11.0-0.13.0](https://ziglang.org/)
60+
- [Zig 0.11.0-0.13.0](https://ziglang.org/) (client)
5861
- [nginx](https://www.nginx.org/) when [compiled with BoringSSL](https://mailman.nginx.org/pipermail/nginx/2023-August/NOISOYU3QTB2DGIYUBGF7CAMQHDI2QLT.html) ([guide](https://blog.centminmod.com/2023/10/03/2860/how-to-enable-cloudflare-post-quantum-x25519kyber768-key-exchange-support-in-centmin-mod-nginx/))
5962
- [Botan C++ library 3.2.0+](https://botan.randombit.net/) ([instructions](https://github.com/randombit/botan/discussions/3747))

0 commit comments

Comments
 (0)