Post-quantum encryption for Cloudflare IPsec is generally available
2026-05-03T07:24:09Z•f91183d27749de4b8055f6f3af16a0d3b4e115fc883b5261a2522163da9d9a66
202931.4 TbpsCiscoCloudflare RadarFortinetML-KEMMatrixaccount-abuse-protectionacmeacme-validationai-for-appsai-securityclient-side-securityddosipseckey-transparencymanaged-oauthoauthpingorapingora-0.8.0post-quantumpost-quantum-roadmaprequest-smugglingscoped-permissions','api-tokens','scannable-tokens','mcp','workeserverless
What happened
Cloudflare published a set of product announcements, security features, telemetry updates, and vulnerability disclosures. Key items: IPsec now supports post‑quantum hybrid ML‑KEM (GA) with confirmed interoperability with Cisco and Fortinet; a companywide post‑quantum roadmap targeting full PQ security by 2029; new PQ telemetry and key‑transparency features in Cloudflare Radar; serverless PQ messaging and a Matrix homeserver proof‑of‑concept; GA launches for AI Security for Apps and Client‑Side Security (new cascading AI detections); Managed OAuth for Access (RFC 9728) and scoped/scannable API‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cloudflare_security_blog
- Record identifier
- f91183d27749de4b8055f6f3af16a0d3b4e115fc883b5261a2522163da9d9a66
- Enrichment time
- 2026-05-03T07:24:09Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.