Google Announces New HTTPS Certificate Approach for Quantum Resistance
Google is developing a new HTTPS certificate system based on Merkle Tree Certificates (MTCs) to address the security challenges posed by quantum computing. This approach aims to maintain high performance and seamless web experiences while adopting post-quantum cryptography. Companies should monitor developments closely, particularly regarding the rollout of MTCs and their impact on existing certificate infrastructures. The key steps involve a feasibility study with Cloudflare, initial bootstrapping with CT log operators, and eventually establishing a dedicated Chrome Quantum-resistant Root Store (CQRS). This transition represents a significant shift in how trust is established online and warrants attention for German KMU IT administrators.

Google introduces a new HTTPS certificate system leveraging Merkle Tree Certificates (MTCs) to prepare for the security threats posed by quantum computing. The current X.509 certificates are deemed too heavy for post-quantum cryptography, impacting performance.
Who is affected?
German KMU IT administrators responsible for managing web infrastructure and ensuring secure online transactions.
What should you do?
Monitor Google’s rollout of MTCs closely through announcements and updates. Understand the transition from X.509 certificates to MTCs, as this will impact certificate management practices. * Evaluate potential impacts on existing security protocols and infrastructure.
The project is currently in Phase 1 (UNDERWAY) with a collaboration with Cloudflare to assess performance and security. Subsequent phases involve inviting CT log operators and establishing the Chrome Quantum-resistant Root Store. This represents a significant shift in how trust is established online.
Stumptner IT unterstützt Unternehmen bei akuten Problemen und dauerhafter IT-Betreuung.
