Forum Discussion

JM's avatar
JM
Icon for Staying Involved rankStaying Involved
2 months ago

Post Quantum Cryptography?

The PQC topic is increasingly being raised - what is the current Cato Networks stance on it? My searches only come up with a rather dismissive blog article from last year (https://www.catonetworks.com/blog/is-recent-quantum-hype-by-google-willows-chip-a-threat-to-rsa-algorithm) while competing vendors (that shall be unnamed) are seemingly taking a very aggressive approach - both for preparing to implement these algorithmes into their products as well as being able to detect/block the use of such protocols currently.

1 Reply

  • OrenD's avatar
    OrenD
    Icon for Cato Employee rankCato Employee

    Hi JM​

    Thanks for bringing up this issue. The good news is that Cato is actively designing a solution for integrating post-quantum cryptography (PQC) into its SASE platform to enable seamless quantum-resistant networking with minimal disruption. Built on a global, converged cloud-native SASE architecture with proprietary DTLS tunnels and fully managed encryption keys and protocols - Cato can adapt to PQC algorithms without requiring major infrastructure changes. Until full PQC tunnels and key exchange is supported, TLSi will support non-PQC cipher suites if the user agent supports them, and allow blocking the connection otherwise to maintain security postures.