Website Security & Threat Management
Post-quantum encryption for Cloudflare IPsec is generally available

Post-quantum encryption for Cloudflare IPsec is generally available

4/30/2026 · Sharon Goldberg, Amos Paul

What this post added

This post announces the general availability of post-quantum encryption for Cloudflare IPsec, utilizing the hybrid ML-KEM (FIPS 203) standard. It details the implementation of the new hybrid IPsec handshake, explains the four-year delay compared to TLS in adopting this standard, and highlights successful interoperability testing with Cisco and Fortinet branch connectors. The post also discusses the importance of interoperable standards for widespread adoption and contrasts post-quantum cryptography with Quantum Key Distribution (QKD).

Read the original post ↗