CurrentINFORMATIONALIETF stream

RFC 9954: Hybrid Key Exchange in TLS 1.3

In plain English — editorial summary, not part of the RFC

Hybrid key exchange refers to using multiple key exchange algorithms simultaneously and combining the result with the goal of providing security even if a way is found to defeat the encryption for all but one of the component algorithms. It is motivated by the transition to post-quantum cryptography. This document provides a construction for hybrid key exchange in the Transport Layer Security (TLS) protocol version 1.3.

Document record

Document ID
RFC9954
Published
July 2026
Authors
D. Stebila; S. Fluhrer; S. Gueron
Status
INFORMATIONAL
Stream
IETF
Area
sec
Pages
18
Also known as

Topics

Related documents

Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.

Also filed under

About this page

The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.

Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.

Data sources · Editorial policy · Report a correction · What is an RFC?

canonical URL: /rfc/9954-hybrid-key-exchange-in-tls-1-3