Golang: Crypto/fips140: do not bloat crypto code unnecessarily
github.com
github.com
As far as I can tell you're great at cryptography code. You've gotten better at the social parts of collaborative software engineering, but there's still room to grow.
> the symbols in your tester2 program account for ~67kb out of a 2.3mb binary
OP did find a "600k difference" in an unstripped comparison but if binary size was critical enough that 600k was a big deal, I'd assume users would be stripping the binaries outright or using a different language (tinygo perhaps) if a <100kb diff was on their list of concerns.
How much code is needed to implement Classical+PQ (Hybrid PQ) or PQ-only (Only PQ) cipher selection restrictions just?
FWIU, with golang:
# This allows X25519MLKEM768 (Hybrid PQ)
GODEBUG=fips140=on
# This prevents any PQ ciphers from being used:
GODEBUG=fips140=only
tlsref needs to be revised to specify PQ cipher lists.So, if you only want PQC, you'll have to do that manually either way. But, I think you'll find many servers aren't ready for that: https://www.netmeister.org/blog/pqc-use-2026-09.html
mozilla/ssl-config-generator is now tlsref/configurar: https://github.com/tlsref/configurator .. http://configurator.tlsref.org/
Having said that, I'm not sure there's much chance of it being adopted. Crypto people really want to have all the complexity all the time, which this is the exact opposite of. I mean, do you really need a custom AVX2-accelerated SHA256 implementation so you can generate a 128-bit random value? Or all of SHA256 and SHA3 and cSHAKE and SHA512? This is what makes WireGuard so secure, there's only one mode and that's secure-by-default.