Compliance Manager now supports Post-Quantum Cryptography (PQC) with NIST aligned guidelines. The Entrust Post Quantum Reference Policy allows you to check if an asset is in compliance with post-quantum (PQ) cryptographic standards by validating the algorithms used. This policy contains the following operations: 

  • Verify Not Quantum Safe Cryptographic Algorithm—This operation checks to see if the algorithm being assessed is found in the Not Allowed PQ Algorithm list.
    • If the algorithm is on the list, then it is not allowed, and the operation will fail. 
    • If the algorithm is not on the list, then it is allowed, and the operation will pass.
  • Verify Quantum Safe Cryptographic Algorithm—This operation checks to see if the algorithm being assessed is found in the Allowed PQ Algorithm list.
    • If the algorithm is not on the list, then it is not allowed, and the operation will fail.  
    • If the algorithm is on the list, then it is allowed, and the operation will pass. 

The Allowed and Not Allowed lists have sample values in them, but you can edit them to meet your requirements.