0 vote
Hello.
Being an ISO 27001 certified service company with high security standards, we would like to see Quantum-proof encryption implemented for data storage and communication.
https://app.conveyor.com/profile/devolutions/d/fips-140-2-annex-a-compliance/R1DLpg
Thank you and best regards.
Marcel
Hello Marcel,
Thank you for your message.
For data storage, we use XChaCha20Poly1305, which is quantum-resistant. For data in transit, we rely on TLS, as we avoid custom encryption protocols; however, TLS does not yet support post-quantum algorithms by default. Additionally, our integration with Devolutions Gateway depends on the JWT standard, which currently lacks support for quantum-resistant signatures.
Please rest assured that we are actively monitoring industry standards and advancements in post-quantum cryptography. As soon as viable quantum-resistant algorithms become available and standardized, we are prepared to implement them to ensure continued security.
Best regards,
Philippe Dugre
Application security and cryptography specialist
Philippe Dugré
Hello.
Thanks for your answer.
We are grateful that you actively follow the industry standards, and are looking forward to further improvements.
Best regards.
Marcel