Skip to content
Cloudflare Launches Post-Quantum Authentication for Origin Connections

Cloudflare Launches Post-Quantum Authentication for Origin Connections

First seen 29 Jul 2026, 17:15 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •July 30, 2026 at 16:10 UTC
  • •Cloudflare now supports post-quantum authentication for origin server connections.
  • •ML-DSA certificates and hybrid key exchange enhance security against quantum threats.
  • •The implementation follows the resolution of a TLS compatibility issue.

Cloudflare has implemented post-quantum authentication for connections to customer origin servers, enhancing security against future quantum computing threats. This follows the resolution of a TLS compatibility incident that affected earlier deployments. Administrators can now utilize ML-DSA certificates combined with X25519MLKEM768 hybrid key exchange to secure both authentication and session keys. The move is part of Cloudflare's broader strategy to achieve full post-quantum security by 2029, addressing the risks of quantum attacks on classical credentials. The company has previously enabled post-quantum encryption for visitor-to-Cloudflare connections in 2022 and 2023. This development is crucial as quantum computing advancements threaten existing cryptographic standards, prompting a shift in security protocols across the industry.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 71d ago How this analysis works

Timeline

2022-01-01
Post-quantum encryption enabled for visitor-to-Cloudflare connections
Cloudflare began deploying post-quantum encryption to secure connections from visitors to its services.
Blog.Cloudflare
2023-01-01
Post-quantum encryption for Cloudflare-to-origin connections
Cloudflare enabled post-quantum encryption for connections to customer origin servers, enhancing security.
Blog.Cloudflare
2026-07-29
Post-quantum authentication launched
Cloudflare announced the launch of post-quantum authentication for origin connections after resolving a TLS incident.
Feeds.4Sysops

More articles in this cluster (5)