tech · quantum risk
Is IPsec Quantum Proof? Network Security & PQC
Verdict
IPsec/IKEv2 remote access and site-to-site VPNs are not quantum-proof while IKE uses classical DH/ECDH and classical authentication. Hybrid KEMs in IKE are the industry near-term direction—verify vendor support.
Overview
IPsec remains common in enterprises. Quantum risk concentrates on IKE: authentication and key establishment for tunnels that may carry crown-jewel traffic for years.
See /is-quantum-proof/vpn for broader VPN framing and hybrid enterprise TLS for related handshake lessons.
Cryptographic profile
- Signatures: IKE authentication (certs/PSKs), IKE key exchange (classical DH/ECDH common; hybrid options emerging)
- Hash: IKE and ESP integrity transforms
- Public-key exposure: Gateway identities and long-lived tunnels are high-value HNDL targets.
What breaks
Mitigations
- Pilot hybrid IKE where vendors support it
- Rotate gateway certs; inventory PSKs
- Prefer certificate auth with managed PKI
- Segment high-sensitivity traffic
FAQ
Is IKEv2 quantum-safe?
Not with classical DH alone. Look for hybrid/PQ vendor profiles.
PSK vs certificates?
Different ops tradeoffs; both need inventory. Certs inherit PKI algorithm migration.
Key concepts (technical dictionary)
Terms used on this page — open a definition: