Hi All
The National Security Agency Post-Quantum Cryptography guidance has been updated to allow ML-DSA (aka CRYSTALS-Dilithium, aka FIPS-PUB 204) for firmware and software signing. This is significant as it means we now have an alternative to XMSS/LMS based code signing. (XMSS/LMS are Quantum-safe but have implementation challenges using Hardware Security Modules (HSMs) to store the state for the signature algorithms.)
Short version: expect to see lots of hardware and software switching to ML-DSA in the next year.
New version of the CNSA 2.0 FAQ .. note the URL is unchanged, but the FAQ document it links is now updated to Apr 2024
https://media.defense.gov/2022/Sep/07/2003071836/-1/-1/0/CSI_CNSA_2.0_FAQ_.PDF
Regards
Caute_Cautim
Thanks for sharing, looks interesting @Caute_cautim.