Changelog
What's changed in QianHeng PQC. The guide is actively maintained, and a regular monitoring process tracks changes in standards and regulatory status across NIST, IETF, ISO/IEC, ETSI, SCA and others; significant updates are recorded here.
v1.2 — 2026-06-22 · US policy refresh — EO 14412
- US policy refresh: EO 14412, signed 2026-06-22, directs federal information systems to migrate to NIST-approved FIPS PQC, advancing the post-quantum encryption and authentication targets for high-sensitivity systems to the 2030 / 2031 windows respectively.
v1.1 — 2026-06-20 · Ecosystem Watch & 2025–26 refresh
- New Ecosystem Watch section (5 pages): 2025–26 pulse, global vendors, PQC chips & hardware, HSM & 密码机, and PQC × AI — dated and sourced from a multi-source web sweep.
- Standards refresh: signature on-ramp Round 3 (9 candidates, May 2026); HQC selected (FIPS number not yet assigned); FIPS 206 (FN-DSA / Falcon) still in progress — as of this snapshot, no public IPD has been released and it is not yet a final FIPS standard; US EO 14306; EU NIS roadmap; ANSSI 2027 certification cutoff — folded into round4, fn-dsa, hqc, timeline, regional.
- Shipping at scale: Cloudflare ~52% PQC web traffic, Apple PQ3/ML-KEM default for iMessage (with broader TLS support added in iOS/macOS 26, not an OS-wide default), Microsoft GA on Windows, Signal SPQR, PAN-OS 12.1, OpenTitan in production, and more.
v1.0 — 2026-06-20 · Initial public release
- 80+ bilingual pages (EN / 中文) across 14 sections.
- Standards: FIPS 203/204/205, SP 800-208/227, NIST IR 8547/8545/8528, Round 4 & the signature on-ramp.
- Global & Industry: IETF RFCs/drafts, ISO/IEC & ITU-T, ETSI, national mandates (CNSA 2.0, BSI, ANSSI, NCSC, EU), and telecom (3GPP, GSMA).
- Algorithms: ML-KEM, ML-DSA, SLH-DSA, FN-DSA, Classic McEliece, HQC, BIKE, XMSS/LMS — plus families and core concepts.
- Migration & protocols: crypto-agility, hybrid, discovery/CBOM, PKI, playbook; TLS, SSH, IPsec, X.509, and TLS decryption & PQC.
- China 国密: SM2/SM3/SM4/SM9, the Cryptography Law & 密评, and SM post-quantum migration.
- Industry Practice & Solutions: QKD vs PQC, quantum risk model, build blueprint, sector scenarios, China vendors & cases, future trends; finance / power / Web3 playbooks.
- Tools: interactive risk self-assessment, runnable Code Lab (OpenSSL 3.5+), and downloadable CBOM scanner & templates.
- Reference: comparison, FAQ, glossary, terminology crosswalk, and resources.
- Accuracy: core standards status is verified against authoritative sources such as NIST / IETF / ISO / SCA where possible, supplemented by automated and human review; always defer to the authoritative original text before implementation or procurement.
Staying current
The standards landscape moves — drafts become RFCs, draft FIPS are published, dates shift. When the
weekly watcher flags a change, the affected pages are updated and a dated entry is added above.
更新日志
乾珩 PQC 的变更记录。本指南持续维护,并通过定期监控流程跟踪 NIST、IETF、ISO/IEC、ETSI、SCA 等标准与监管状态变化;重要更新会记录在此。
v1.2 2026-06-22 美国政策刷新 EO 14412
- 美国政策刷新:2026-06-22 EO 14412 发布,要求联邦信息系统向 NIST-approved FIPS PQC 迁移,并将高敏感系统的后量子加密与认证目标分别推进至 2030 / 2031 时间窗。
v1.1 2026-06-20 产业前沿与 2025-26 刷新
- 新增产业前沿板块(5 页):2025-26 动态、全球厂商、PQC 芯片与硬件、HSM 与密码机、PQC 与 AI——均带日期与来源,综合多方联网检索。
- 标准刷新:签名新征集第三轮(9 个候选,2026-05);HQC 已入选(FIPS 编号未公布);FIPS 206(FN-DSA / Falcon)仍在推进中;截至本次快照,公开 IPD 尚未发布,尚非最终 FIPS 标准;美国 EO 14306;EU NIS 路线图;ANSSI 2027 认证门槛——已并入 round4、fn-dsa、hqc、timeline、regional。
- 规模化落地:Cloudflare 约 52% PQC 网页流量、Apple PQ3/ML-KEM 为 iMessage 默认(iOS/macOS 26 进一步扩展 TLS 支持,并非全系统默认)、Microsoft Windows GA、Signal SPQR、PAN-OS 12.1、OpenTitan 量产等。
v1.0 2026-06-20 首次公开发布
- 80+ 双语页面(中英),共 14 个板块。
- 标准规范:FIPS 203/204/205、SP 800-208/227、NIST IR 8547/8545/8528、第四轮与签名新征集。
- 国际与行业:IETF RFC/草案、ISO/IEC 与 ITU-T、ETSI、各国监管(CNSA 2.0、BSI、ANSSI、NCSC、EU)、电信(3GPP、GSMA)。
- 算法:ML-KEM、ML-DSA、SLH-DSA、FN-DSA、经典 McEliece、HQC、BIKE、XMSS/LMS——以及家族与核心概念。
- 迁移与协议:密码敏捷、混合、资产发现/CBOM、PKI、实战手册;TLS、SSH、IPsec、X.509,以及 TLS 解密与 PQC。
- 中国国密:SM2/SM3/SM4/SM9、商用密码合规与密评、国密后量子迁移。
- 行业落地与方案:QKD 与 PQC、量子风险模型、构建框架、行业场景、中国厂商案例、未来趋势;金融 / 电力 / Web3 方案。
- 工具:交互式风险自评工具、可运行的实操实验室(OpenSSL 3.5+)、可下载的 CBOM 扫描器与模板。
- 参考:算法对比、常见问题、术语表、术语对照表、资源链接。
- 准确性:核心标准状态尽量对照 NIST / IETF / ISO / SCA 等权威来源核验,并辅以自动化与人工复核;实现与采购前仍应以权威原文为准。
保持最新
标准生态在变动——草案转为 RFC、草案 FIPS 发布、日期调整。当每周监控器发现变更时,会更新相关页面并在上方新增带日期的条目。