]> Cypherpunks repositories - gostls13.git/commit
crypto/hpke: apply fips140.WithoutEnforcement to ML-KEM+X25519 hybrid
authorFilippo Valsorda <filippo@golang.org>
Tue, 9 Dec 2025 00:04:16 +0000 (01:04 +0100)
committerGopher Robot <gobot@golang.org>
Wed, 10 Dec 2025 21:46:00 +0000 (13:46 -0800)
commitb130dab7927741223d40f221e27f3bd351e9cddf
tree23729c2ba8dc5d1747ffc4eb868231ee7fb2bb2c
parentc39fe18fea16d6bdbd5526a7b7d7b59e84ae0144
crypto/hpke: apply fips140.WithoutEnforcement to ML-KEM+X25519 hybrid

Since it uses an Approved KEM (ML-KEM), the overall hybrid KEM is
Approved, even if X25519 is not.

Updates #70514
Updates #74630

Change-Id: I2bb60c36fcf570baa3c389e2daa3698e6a6a6964
Reviewed-on: https://go-review.googlesource.com/c/go/+/728505
Auto-Submit: Filippo Valsorda <filippo@golang.org>
LUCI-TryBot-Result: Go LUCI <golang-scoped@luci-project-accounts.iam.gserviceaccount.com>
Reviewed-by: Roland Shoemaker <roland@golang.org>
Reviewed-by: Dmitri Shuralyov <dmitshur@google.com>
src/crypto/hpke/pq.go