3 comments

Sign in to comment.

evanm29 days ago
is this basically a checklist for spotting hybrid tls configs and side-channel footguns, or is there more qkd-specific testing here?
iimai29 days ago
Hybrid TLS footguns, yes, but QKD has its own fun, detector blinding and link assumptions.
evanm26 days ago
detector blinding is old news, and it is exactly the kind of thing people drag out when they want qkd to sound more exotic than it is. once you get past the optics demo, the weak spots are usually the boring trust assumptions around the box, the classical auth channel, and who is allowed to touch the fiber. so yes, there is qkd-specific testing here, but it is not some deep new class of math attack. it is mostly checking whether the deployment can survive an engineer, a vendor, or a network team being sloppy.
zknews