This repo is a mandatory container for the FPKI PQC Project Plan available on the Project tab above, or at the following link: https://github.com/orgs/GSA/projects/429/views/4
Current FPKI design plans are only for a PQC pure hierarchy and do not include any hybrid or composite models.
This plan does not account for any traditional key migrations to 3072-bit RSA under current FPKI CAs.
Issue submission (which correlate to project plan activities/tasks) is limited to assigned contributors. If you are a PA member or observer and would like to become a collaborator, please email fpki@gsa.gov, otherwise please leverage the discussions tab.
The FPKI Management authority has established an ML-DSA-87 self-signed root CA to support non-production affiliate testing, additionally Draft FPKI PQC certificate and CRL profiles have been established to provide guidance to testers. See the following links for additional details.
- Bridge and Root Authority Working Lab (BRAWL the PQC development CAs) - https://www.idmanagement.gov/implement/fpkicite/
- BRAWL, Development Root CA Certificate - http://repo.brawl.fpki-lab.gov/fcpca/DevfcpcaD1.crt
- Draft Common PQC certificate and CRL profiles - https://www.idmanagement.gov/docs/fpki-x509-cert-profile-common-pqc.pdf
- Draft FBCA PQC certificate and CRL profiles - https://www.idmanagement.gov/docs/fpki-x509-cert-profile-fbca-pqc.pdf
Email FPKI-help@gsa.gov if you would like to request a certificate request form for a BRAWL CA certificate.