A United States federal agency recently secured its network against evolving quantum threats by deploying full post-quantum cryptography in under an hour per site, a speed previously considered unattainable without extensive infrastructure changes. The agency integrated Phio TX-EM cryptographic management software with existing Cisco hardware, achieving zero downtime during algorithm updates as part of an ongoing Cisco SD-WAN upgrade, the company says. The company reports demonstrating a phased rollout that eases compliance with Executive Order 14412. This approach highlights a path toward adaptable, audit-ready quantum security without costly hardware replacements.
Phio TX-EM Enables Rapid Post-Quantum Cryptography on Cisco Networks
The agency prioritized a phased rollout, strategically incorporating the security upgrade alongside an ongoing Cisco SD-WAN upgrade to minimize disruption and maximize resource use. This approach to network security allowed for zero downtime during algorithm changes, a critical feature for maintaining operational continuity while adapting to evolving cryptographic standards. Phio TX-EM operates as a containerized software platform within the Cisco router’s device boundary, delivering strong symmetric keys independently from the data plane.
The agency’s decision to deploy post-quantum cryptography on existing infrastructure also streamlined compliance with Executive Order 14412, providing an expedited path to audit-ready crypto-agility. “Deploying on existing hardware eased the burden of compliance,” the agency reports, highlighting the benefits of avoiding costly and time-consuming hardware replacements.
KETS’ chip-based Quantum Key Distribution technology was successfully integrated with Cisco IOS XR-based routing infrastructure, feeding quantum keys into MACsec encryption. The agency’s successful deployment highlights the potential for adaptable, audit-ready quantum security without necessitating wholesale infrastructure overhauls, a significant advancement for organizations facing the looming threat of quantum decryption.
Site-by-Site Deployment with Zero Downtime During SD-WAN Upgrades
This approach bypassed the need for extensive hardware overhauls, a significant departure from previously anticipated timelines for quantum readiness. The agency maintained zero downtime during algorithm changes, demonstrating a level of crypto-agility essential for adapting to evolving quantum threats. This uninterrupted service was achieved because Phio TX-EM delivers strong symmetric keys out of band, separate from the data plane, allowing for smooth cryptographic updates. Phio TX-EM is both FIPS 140-3 and FIPS 203 validated, adding another layer of assurance to the agency’s network security.




See today’s quantum computing news on Quantum Zeitgeist for the latest breakthroughs in qubits, hardware, algorithms, and industry deals.
