-
Legacy date moved to 2030, with an exception for RSA 2048
-
Deprecation of 3DES, SHA-224, and all ECC-224 based
-
Addition of NIST PQC algorithms ML-DSA, ML-KEM, and LMS/XMSS
-
Addition of AES_OCB3 as a new AEAD mode
-
Addition of hybrid constructions
Previous Version(s)
Changes in this version mainly focus on TLS 1.3 updates.
Cryptography is an important pillar of a digital service’s security and impacts the application, the secure component and the related management systems. In order to help the market to anticipate required migration, GlobalPlatform has decided to provide regular cryptographic recommendations about cryptographic algorithms and key lengths. The recommendations define the GlobalPlatform technology usage of the cryptographic strengths for the management of a secure component and associated content, and also share the targeted security strengths for future GlobalPlatform specifications.