Cloudflare Launches Post-Quantum Authentication for Origin Connections

Cloudflare Launches Post-Quantum Authentication for Origin Connections

First seen 29 Jul 2026, 17:15 UTC Blog.CloudflareFeeds.4Sysopsblog.google 80% similarity 27.9

Article Content

Browse articles
ThreatCluster

Cloudflare has implemented post-quantum authentication for connections to customer origin servers, enhancing security against future quantum computing threats. This follows the resolution of a TLS compatibility incident that affected earlier deployments. Administrators can now utilize ML-DSA certificates combined with X25519MLKEM768 hybrid key exchange to secure both authentication and session keys. The move is part of Cloudflare's broader strategy to achieve full post-quantum security by 2029, addressing the risks of quantum attacks on classical credentials. The company has previously enabled post-quantum encryption for visitor-to-Cloudflare connections in 2022 and 2023. This development is crucial as quantum computing advancements threaten existing cryptographic standards, prompting a shift in security protocols across the industry.

Key Points: • Cloudflare now supports post-quantum authentication for origin server connections. • ML-DSA certificates and hybrid key exchange enhance security against quantum threats. • The implementation follows the resolution of a TLS compatibility issue.

ThreatCluster AI How this analysis works

Timeline

2022-01-01
Post-quantum encryption enabled for visitor-to-Cloudflare connections
Cloudflare began deploying post-quantum encryption to secure connections from visitors to its services.
Blog.Cloudflare
2023-01-01
Post-quantum encryption for Cloudflare-to-origin connections
Cloudflare enabled post-quantum encryption for connections to customer origin servers, enhancing security.
Blog.Cloudflare
2026-07-29
Post-quantum authentication launched
Cloudflare announced the launch of post-quantum authentication for origin connections after resolving a TLS incident.
Feeds.4Sysops

Community

Browse all →