← CABF Ballot Browser
SMC-013 passed

Ballot SMC013: Enable PQC Algorithms for S/MIME

S/MIME Certificate Working Group

Key dates

Effective date
22 Aug 2025 10 months ago
Voting opened
14 Jul 2025 11 months ago
Voting closed
21 Jul 2025 11 months ago
IPR review ends
20 Aug 2025 10 months ago
Discussion opened
02 Jul 2025 11 months ago
Discussion closed
11 Jul 2025 11 months ago

Resources

AI Summary

Generated 2026-06-23 21:39 UTC

Ballot outcome

  • Ballot SMC013: Enable PQC Algorithms for S/MIME was adopted as of August 22, 2025.
  • Voting results state the ballot PASSED.
  • Bylaws requirements were MET, including:
    • By-law 2.3(6): two-thirds or more of votes cast in the Certificate Issuer category were in favour.
    • By-law 2.3(6): at least fifty percent plus one of votes cast in the Certificate Consumer category were in favour.
    • At least one voting member in each category voted in favour.
    • By-law 2.3(7): quorum was 10 and the requirement was MET.
  • Intellectual Property Review (IPR) period completed with no IPR Exclusion Notices filed.

What the ballot changes

  • Introduces specifications for two post-quantum cryptography (PQC) algorithms standardized by NIST for use in the S/MIME Baseline Requirements:
    • ML-DSA (Module-Lattice-Based Digital Signature Algorithm)
    • ML-KEM (Module-Lattice-Based Key-Encapsulation Mechanism)
  • Specifies single-key/non-hybrid PQC certificates that do not rely upon pre-quantum algorithms.
  • Intended to enable experimentation by Certificate Issuers with PQC certificates, noting that additional requirements on the use of PQC may be imposed by Root programs.
  • The ballot modifies the S/MIME Baseline Requirements based on Version 1.0.10.

Key technical requirements described in the evidence

  • For ML-DSA keys, the CA SHALL use one of the following parameter sets:
    • ML-DSA-44 (OID: 2.16.840.1.101.3.4.3.17)
    • ML-DSA-65 (OID: 2.16.840.1.101.3.4.3.18)
    • ML-DSA-87 (OID: 2.16.840.1.101.3.4.3.19)
  • For ML-KEM keys, the CA SHALL use one of the following parameter sets:
    • ML-KEM-512 (OID: 2.16.840.1.101.3.4.4.1)
    • ML-KEM-768 (OID: 2.16.840.1.101.3.4.4.2)
    • ML-KEM-1024 (OID: 2.16.840.1.101.3.4.4.3)
  • The evidence also includes algorithm identifier and encoding requirements for ML-DSA and ML-KEM (including that parameters are absent for ML-DSA and ML-KEM keys, and that specific AlgorithmIdentifier encodings are byte-for-byte identical to provided hex values).

Timeline (as stated on the ballot page)

  • Discussion (at least 7 days): July 2, 2025 18:00:00 UTC to July 11, 2025 18:00:00 UTC.
  • Voting for Approval: July 14, 2025 17:00:00 UTC to July 21, 2025 17:00:00 UTC.
  • IPR Review (30 Days): Start of Review Period 2025-07-21 20:00:00 UTC; End of Review Period 2025-08-20 20:00:00 UTC.
  • The ballot is adopted as of August 22, 2025.
Model: gpt-5.4-nano Confidence: 0.86 Result: passed
Effective date
2025-08-22
Voting opened
2025-07-14
Voting closed
2025-07-21
IPR review ends
2025-08-20
Discussion opened
2025-07-02
Discussion closed
2025-07-11

AI-generated from the CABF ballot page. The official CABF article remains the authoritative source.

Vote result

Certificate Issuers 19 yes 0 no 1 abstain
Certificate Consumers 2 yes 1 no 0 abstain

CABF ballot approval depends on both voting classes; CA votes alone are not decisive.

21 Yes
1 No
1 Abstain

91% yes · 4% no · 5% abstain

Proposers

Stephen Davidson (DigiCert) and endorsed by Andreas Henschel (D-Trust) and Martijn Katerbarg (Sectigo).

Excerpt

SearchHome » All CA/Browser Forum Posts » Ballot SMC013: Enable PQC Algorithms for S/MIMEBallot SMC013: Enable PQC Algorithms for S/MIMEThe Intellectual Property Review (IPR) period for Ballot SMC013 (Enable PQC Algorithms for S/MIME) has completed.

View on cabforum.org → Last fetched 15 hours ago

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action