NIST IR 8547: U.S. federal deprecation timeline: dates and requirements ======================================================================= NIST IR 8547 sets the U.S. federal timeline for retiring quantum-vulnerable public-key cryptography: RSA, ECDSA, EdDSA, ECDH, and finite-field DH at 112-bit security are deprecated after 2030 and all quantum-vulnerable public-key algorithms are disallowed after 2035. Issued by: NIST (U.S.) Date: Initial public draft 2024-11-12 Status: Draft (final pending as of 2026-09) Milestones: 2030: Quantum-vulnerable algorithms at 112-bit security (RSA-2048, P-256, and similar) deprecated | 2035: All quantum-vulnerable public-key algorithms disallowed for U.S. federal use Source: https://csrc.nist.gov/pubs/ir/8547/ipd Source page: https://pqaudit.org/timelines/nist-ir-8547/ Compiled by: PQC Audit Index editors (https://pqaudit.org/about/) Last reviewed: 2026-09-12