{
  "slug": "nist-ir-8547",
  "name": "NIST IR 8547: U.S. federal deprecation timeline",
  "body": "NIST (U.S.)",
  "date": "Initial public draft 2024-11-12",
  "status": "Draft (final pending as of 2026-09)",
  "summary": "NIST IR 8547 sets the U.S. federal timeline for retiring quantum-vulnerable public-key cryptography: RSA, ECDSA, EdDSA, ECDH, and finite-field DH at 112-bit security are deprecated after 2030 and all quantum-vulnerable public-key algorithms are disallowed after 2035.",
  "milestones": [
    [
      "2030",
      "Quantum-vulnerable algorithms at 112-bit security (RSA-2048, P-256, and similar) deprecated"
    ],
    [
      "2035",
      "All quantum-vulnerable public-key algorithms disallowed for U.S. federal use"
    ]
  ],
  "notes": [
    "Hybrid modes that combine an approved post-quantum algorithm with a classical one are not caught by the 2035 disallowance.",
    "Applies to federal information systems via FIPS 140-3 and SP 800-131A; widely used as the de facto industry timeline."
  ],
  "url": "https://csrc.nist.gov/pubs/ir/8547/ipd",
  "url_page": "https://pqaudit.org/timelines/nist-ir-8547/",
  "updated": "2026-09-12"
}