New Hope Post-Quantum Key Exchange Algorithm¶
Implemented according to the paper Post-quantum key exchange – a new hope by Erdem Alkim, Léo Ducas,
Thomas Pöppelmann and Peter Schwabe. The final SHA3-256 hash been omitted since IKE derives the IKE and IPsec session keys from the raw shared secret via a Pseudo Random Function (PRF), anyway.
A New Hope example scenario using post-quantum BLISS signatures can be found here
This plugin requires implementations of the SHAKE128 and the ChaCha20 XOF functions. The SHAKE128 XOF implementation is provided by the sha3 plugin. The ChaCha20 XOF implementation is provided by the chapoly plugin.