No plans for a CECPQ2 at the moment, although I believe that the general structure of running both an EC and PQ key agreement concurrently is likely a good idea in the future until time gives us better confidence in the PQ half.
I'm hoping that we'll have some consensus in a year or two on a good candidate PQ algorithm that we can get deployed across several implementations. It might be very similar to NewHope, or perhaps Shor et al will break lattices in general :)
I'm hoping that we'll have some consensus in a year or two on a good candidate PQ algorithm that we can get deployed across several implementations. It might be very similar to NewHope, or perhaps Shor et al will break lattices in general :)
(C in CECPQ1 was "combined".)