Quantum vault for protecting secrets against quantum computing
Systems and methods for managing a quantum vault for storing a secret include, responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for the quantum vault such that the first encryption algorithm is sufficient to protect against the first level of quantum computing, such that a first layer of the quantum vault is configured with the first encryption algorithm; and monitoring the quantum computing processing capability; and responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm.
1 . A method for managing a quantum vault for storing a secret, the method comprising steps of:
responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for the quantum vault such that the first encryption algorithm is sufficient to protect against the first level of quantum computing processing capability, such that a first layer of the quantum vault is configured with the first encryption algorithm;
monitoring the quantum computing processing capability; and
responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm
wherein one of
the first encryption algorithm includes a classical encryption algorithm and the second encryption algorithm includes a Post Quantum Cryptography (PQC) algorithm, or
the first encryption algorithm includes a first Post Quantum Cryptography (PQC) algorithm and the second encryption algorithm includes a second PQC algorithm.
2 . The method of claim 1 , wherein the steps further include:
continuing the monitoring and adding one or more additional layers with one or more additional encryption algorithms, based on the monitoring of quantum computing processing capability.
3 . The method of claim 2 , wherein, at any given time, an outermost layer of the quantum vault is sufficient to protect against a current level of quantum computing processing capability.
4 . The method of claim 1 , wherein the steps further include:
causing a new quantum vault to be created after the determination of the second level with a first layer of the new quantum vault utilizing the second encryption algorithm.
5 . The method of claim 1 , wherein the quantum computing processing capability is based on qubit processing capability.
6 . The method of claim 1 , wherein the secret is an encryption key associated with one of a symmetric algorithm and an asymmetric algorithm.
7 . A cloud service comprising one or more processors and memory storing instructions that, when executed, cause the one or more processors to perform steps of:
responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for a quantum vault, configured to store and protect a secret, such that the first encryption algorithm is sufficient to protect against the first level of quantum computing processing capability, such that a first layer of the quantum vault is configured with the first encryption algorithm;
monitoring the quantum computing processing capability; and
responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm
wherein one of
the first encryption algorithm includes a classical encryption algorithm and the second encryption algorithm includes a Post Quantum Cryptography (PQC) algorithm, or
the first encryption algorithm includes a first Post Quantum Cryptography (PQC) algorithm and the second encryption algorithm includes a second PQC algorithm.
8 . The cloud service of claim 7 , wherein the steps further include:
continuing the monitoring and adding one or more additional layers with one or more additional encryption algorithms, based on the monitoring of quantum computing processing capability.
9 . The cloud service of claim 8 , wherein, at any given time, an outermost layer of the quantum vault is sufficient to protect against a current level of quantum computing processing capability.
10 . The cloud service of claim 7 , wherein the steps further include:
causing a new quantum vault to be created after the determination of the second level with a first layer of the new quantum vault utilizing the second encryption algorithm.
11 . The cloud service of claim 7 , wherein the quantum computing processing capability is based on qubit processing capability.
12 . The cloud service of claim 7 , wherein the secret is an encryption key associated with one of a symmetric algorithm and an asymmetric algorithm.
13 . A method for managing a quantum vault for storing a secret, the method comprising steps of:
responsive to a determination of a first level of quantum computing processing capability, defining a first encryption algorithm for the quantum vault such that the first encryption algorithm is sufficient to protect against the first level of quantum computing processing capability, such that a first layer of the quantum vault is configured with the first encryption algorithm;
monitoring the quantum computing processing capability;
responsive to a determination of a second level of the quantum computing processing capability where the first encryption algorithm is no longer sufficient to protect against, defining a second encryption algorithm for the quantum vault such that the second encryption algorithm is sufficient to protect against the second level of quantum computing processing capability, and such that the second encryption algorithm is configured as an outermost layer over the first encryption algorithm; and
causing a new quantum vault to be created after the determination of the second level with a first layer of the new quantum vault utilizing the second encryption algorithm.
14 . The method of claim 13 , wherein the steps further include:
continuing the monitoring and adding one or more additional layers with one or more additional encryption algorithms, based on the monitoring of quantum computing processing capability.
15 . The method of claim 14 , wherein, at any given time, an outermost layer of the quantum vault is sufficient to protect against a current level of quantum computing processing capability.
16 . The method of claim 13 , wherein the first encryption algorithm includes a classical encryption algorithm and the second encryption algorithm includes a Post Quantum Cryptography (PQC) algorithm.
17 . The method of claim 13 , wherein the first encryption algorithm includes a first Post Quantum Cryptography (PQC) algorithm and the second encryption algorithm includes a second PQC algorithm.
18 . The method of claim 13 , wherein the quantum computing processing capability is based on qubit processing capability.
19 . The method of claim 13 , wherein the secret is an encryption key associated with one of a symmetric algorithm and an asymmetric algorithm.