FR
live
tag

#post-quantum

Kubernetes 1.38 starts the post-quantum migration with ML-DSA certificates

The v1.38.0-alpha.1 pre-release adds beta support for ML-DSA signing of pod certificates and CSRs, preparing the control plane for the post-quantum era. Enable the CertificateSigningRequestMLDSA feature gate on a test cluster and map your gRPC dependencies before upgrading.

Amazon Corretto 27 ships post-quantum TLS and compact object headers enabled by default

On September 17, 2026, AWS released Corretto 27, its free OpenJDK distribution, with hybrid post-quantum key exchange for TLS 1.3 and compact object headers turned on by default. Test these wins in non-critical environments, but keep your LTS workloads on Java 21 or 25 — this release is only supported through April 2027.

OpenSSL 4.1 adds DTLS 1.3 and GREASE to the network crypto stack

On September 9, 2026, the first OpenSSL 4.1 alpha enabled DTLS 1.3 — shorter handshakes, forward secrecy and built-in post-quantum crypto — plus GREASE, the mechanism that stops middleboxes from ossifying TLS. For anyone running gateways, IoT fleets or UDP-based services, it is the signal to start planning the migration.

Type at least two characters.

↑ ↓ navigate ↵ open esc dismiss