NSS with ML-KEM and ML-DSA algorithms passes lab testing and enters Modules in Process list, making Rocky Linux from CIQ one of the first Enterprise Linux distributionsNSS with ML-KEM and ML-DSA algorithms passes lab testing and enters Modules in Process list, making Rocky Linux from CIQ one of the first Enterprise Linux distributions

CIQ’s NSS Module First to Achieve CAVP Certification for Post-Quantum Cryptography Algorithms

4 min read

NSS with ML-KEM and ML-DSA algorithms passes lab testing and enters Modules in Process list, making Rocky Linux from CIQ one of the first Enterprise Linux distributions advancing FIPS-validated post-quantum cryptography with NSS

RENO, Nev., Feb. 4, 2026 /PRNewswire/ — CIQ today announced that Network Security Services (NSS) for Rocky Linux from CIQ (RLC) 9.6 with post-quantum cryptography (PQC) algorithms has achieved Cryptographic Algorithm Validation Program (CAVP) certification from the National Institute of Standards and Technology (NIST) and entered the Modules in Process (MIP) list. This milestone makes Rocky Linux from CIQ the first Enterprise Linux distribution with an NSS module containing NIST-approved PQC algorithms advancing toward full FIPS 140-3 validation.

The NSS module includes two NIST-approved PQC algorithms: ML-KEM (Module-Lattice-Based Key Encapsulation Mechanism) for secure key exchange, and ML-DSA (Module-Lattice-Based Digital Signature Algorithm) for digital signatures. These algorithms are designed to resist attacks from both classical and quantum computers.

When Rocky Linux released NSS version 3.112 in September 2025 with ML-KEM and ML-DSA support, the algorithms were feature complete but not FIPS compliant. CIQ Distinguished Engineer and Samba Project Co-Creator Jeremy Allison led the effort to enhance NSS to meet FIPS 140-3 standards for submission to NIST.

“The ML-KEM and ML-DSA code in NSS was feature complete, but not FIPS compliant,” said Allison. “CIQ has enabled and open-sourced FIPS 140-3 compliance code in nss-3.112 for these increasingly important algorithms to provide security for our customers and help them prepare for the post-quantum future.”

All of CIQ’s FIPS PQC engineering work is open source and available on GitHub, contributing to the broader security community.

The National Security Agency’s CNSA 2.0 sets a compressed timeline for National Security Systems to adopt quantum–resistant cryptography, with key transition milestones beginning in 2027 and a full migration targeted by 2035. However, the “harvest now, decrypt later” threat makes immediate preparation critical. Adversaries can collect encrypted data today and decrypt it once quantum computers become capable.

NSS provides application-level cryptography for browser sessions, SSL/TLS connections, and serves as the cryptographic provider for Java applications when systems operate in FIPS mode. This makes PQC-enabled NSS relevant not just for web communications but for the broad range of Java-based enterprise applications common in government and regulated industries.

“Organizations making platform decisions today need confidence that their infrastructure partner can deliver quantum-resistant solutions,” said Gregory Kurtzer, CEO of CIQ. “Achieving MIP status with CAVP-certified PQC algorithms demonstrates CIQ can solve these complex engineering challenges and gives customers confidence in the roadmap for OpenSSL and other cryptographic modules as we build the quantum-resistant stack they’ll need.”

CIQ’s cryptographic strategy extends beyond NSS. The company is tracking PQC implementation across all five FIPS cryptographic modules:

  • NSS — ML-KEM and ML-DSA in MIP with CAVP certification, full FIPS 140-3 validation anticipated Q2 2027 at current velocity
  • OpenSSL — PQC support added in OpenSSL 3.5; FIPS 140-3 validation process begins for Rocky Linux from CIQ 10.2 in Q3 2026 and RLC 9.10 in mid-2027
  • Kernel — Monitoring upstream PQC development
  • GnuTLS — PQC stabilization ongoing upstream
  • LibGCrypt — Awaiting stable PQC release upstream

As upstream projects stabilize PQC implementations, CIQ will continue pursuing FIPS validation to deliver comprehensive quantum-resistant infrastructure.

NSS with ML-KEM and ML-DSA post-quantum algorithms in MIP status is available now for Rocky Linux from CIQ customers. Many compliance frameworks accept MIP status while awaiting full CMVP validation. The MIP listing and technical details are available on the NIST Cryptographic Module Validation Program website. CIQ’s open source FIPS PQC compliance code is available on GitHub.

Read more about the CAVP certification in this CIQ blog post.

For more information about CIQ’s post-quantum cryptography roadmap and FIPS validation strategy, visit ciq.com or contact CIQ for technical consultations.

About CIQ
CIQ delivers secure and performant software infrastructure for the demands of all modern workloads, from the most mundane to the most extreme HPC and AI jobs. We believe infrastructure should drive the future of your business and that both the operating system of a single machine and the orchestration layer to manage a cluster of machines and even hybrid environments needs to be optimized for your requirements. We are an open source company who has started and contributed to critical infrastructure projects such as Rocky Linux, Warewulf, Fuzzball, Ascender and Apptainer. For more information, visit ciq.com

MEDIA CONTACT:
Cristin Connelly
Cathey.co for CIQ
[email protected]

Cision View original content to download multimedia:https://www.prnewswire.com/news-releases/ciqs-nss-module-first-to-achieve-cavp-certification-for-post-quantum-cryptography-algorithms-302679004.html

SOURCE CIQ

Market Opportunity
QUANTUM Logo
QUANTUM Price(QUANTUM)
$0.003442
$0.003442$0.003442
-0.26%
USD
QUANTUM (QUANTUM) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

‘One Battle After Another’ Becomes One Of This Decade’s Best-Reviewed Movies

‘One Battle After Another’ Becomes One Of This Decade’s Best-Reviewed Movies

The post ‘One Battle After Another’ Becomes One Of This Decade’s Best-Reviewed Movies appeared on BitcoinEthereumNews.com. Topline Critics have hailed Paul Thomas Anderson’s “One Battle After Another,” starring Leonardo DiCaprio, as a “masterpiece,” indicating potential Academy Awards success as it boasts near-perfect scores on review aggregators Metacritic and Rotten Tomatoes based on early reviews. Leonardo DiCaprio stars in “One Battle After Another,” which opens in theaters next week. (Photo by Jeff Spicer/Getty Images for Warner Bros. Pictures) Getty Images for Warner Bros. Pictures Key Facts “One Battle After Another” boasts a nearly perfect 97 out of a possible 100 on Metacritic based on its first 31 reviews, making it the highest-rated movie of this decade on Metacritic’s best movies of all time list. The movie also has a 96% score on Rotten Tomatoes based on the first 56 reviews, with only two reviews considered “rotten,” or negative. The Associated Press hailed the movie as “an American masterpiece,” noting the movie touches on topical political themes and depicts a society where “gun violence, white power and immigrant deportations recur in an ongoing dance, both farcical and tragic.” The movie stars DiCaprio as an ex-revolutionary who reunites with former accomplices to rescue his 16-year-old daughter when she goes missing, and Anderson has said the movie was inspired by the 1990 novel, “Vineland.” Most critics have described the movie as an action thriller with notable chase scenes, which jumps in time from DiCaprio’s character’s early days with fictional revolutionary group, the French 75, to about 15 years later, when he is pursued by foe and military leader Captain Steven Lockjaw, played by Sean Penn. The Warner Bros.-produced film was made on a big budget, estimated to be between $130 million and $175 million, and co-stars Penn, Benicio del Toro, Regina Hall and Teyana Taylor. When Will ‘one Battle After Another’ Open In Theaters And Streaming? The move opens in…
Share
BitcoinEthereumNews2025/09/18 07:35
Best Crypto to Buy as Saylor & Crypto Execs Meet in US Treasury Council

Best Crypto to Buy as Saylor & Crypto Execs Meet in US Treasury Council

The post Best Crypto to Buy as Saylor & Crypto Execs Meet in US Treasury Council appeared on BitcoinEthereumNews.com. Michael Saylor and a group of crypto executives met in Washington, D.C. yesterday to push for the Strategic Bitcoin Reserve Bill (the BITCOIN Act), which would see the U.S. acquire up to 1M $BTC over five years. With Bitcoin being positioned yet again as a cornerstone of national monetary policy, many investors are turning their eyes to projects that lean into this narrative – altcoins, meme coins, and presales that could ride on the same wave. Read on for three of the best crypto projects that seem especially well‐suited to benefit from this macro shift:  Bitcoin Hyper, Best Wallet Token, and Remittix. These projects stand out for having a strong use case and high adoption potential, especially given the push for a U.S. Bitcoin reserve.   Why the Bitcoin Reserve Bill Matters for Crypto Markets The strategic Bitcoin Reserve Bill could mark a turning point for the U.S. approach to digital assets. The proposal would see America build a long-term Bitcoin reserve by acquiring up to one million $BTC over five years. To make this happen, lawmakers are exploring creative funding methods such as revaluing old gold certificates. The plan also leans on confiscated Bitcoin already held by the government, worth an estimated $15–20B. This isn’t just a headline for policy wonks. It signals that Bitcoin is moving from the margins into the core of financial strategy. Industry figures like Michael Saylor, Senator Cynthia Lummis, and Marathon Digital’s Fred Thiel are all backing the bill. They see Bitcoin not just as an investment, but as a hedge against systemic risks. For the wider crypto market, this opens the door for projects tied to Bitcoin and the infrastructure that supports it. 1. Bitcoin Hyper ($HYPER) – Turning Bitcoin Into More Than Just Digital Gold The U.S. may soon treat Bitcoin as…
Share
BitcoinEthereumNews2025/09/18 00:27
Google and PayPal Team Up to Power Next-Gen Commerce for Billions

Google and PayPal Team Up to Power Next-Gen Commerce for Billions

TLDR: Google and PayPal signed a multiyear partnership to integrate payments across Google platforms and boost digital commerce experiences. PayPal’s checkout, payouts, and Hyperwallet will be embedded into Google products, including Ads, Play, and Cloud services. The partnership uses Google’s AI to create agent-based shopping tools and secure, frictionless payment solutions for users worldwide. PayPal [...] The post Google and PayPal Team Up to Power Next-Gen Commerce for Billions appeared first on Blockonomi.
Share
Blockonomi2025/09/18 16:15