Integrated: 8314323: Implement JEP 527: TLS 1.3 Hybrid Key Exchange

Hai-May Chao hchao at openjdk.org
Tue Jan 20 16:19:29 UTC 2026


On Thu, 2 Oct 2025 22:52:49 GMT, Hai-May Chao <hchao at openjdk.org> wrote:

> Implement hybrid key exchange support for TLS 1.3 by adding three post-quantum hybrid named groups: X25519MLKEM768, SecP256r1MLKEM768, and SecP384r1MLKEM1024.
> Please see [JEP 527](https://openjdk.org/jeps/527) for details about this change.

This pull request has now been integrated.

Changeset: 21dc41f7
Author:    Hai-May Chao <hchao at openjdk.org>
URL:       https://git.openjdk.org/jdk/commit/21dc41f744edd138e77970d4e25e3a7eda41621f
Stats:     1879 lines in 22 files changed: 1759 ins; 40 del; 80 mod

8314323: Implement JEP 527: TLS 1.3 Hybrid Key Exchange

Co-authored-by: Jamil Nimeh <jnimeh at openjdk.org>
Co-authored-by: Weijun Wang <weijun at openjdk.org>
Reviewed-by: wetmore, mullan

-------------

PR: https://git.openjdk.org/jdk/pull/27614


More information about the security-dev mailing list