Quantum XChange Launches First FIPS-Validated Post-Quantum Crypto in Cisco Marketplace
Quantum XChange has made history by becoming the first company to offer a FIPS-validated post-quantum cryptography solution in the Cisco Networking App Marketplace. The company's Phio TX-EM application, which is containerized, provides quantum-safe keys to existing Cisco routers and switches without requiring additional hardware or network downtime. Tom Butta, Chief Commercial and Marketing Officer at Quantum XChange, highlighted the solution's seamless integration and verification through Cisco’s SKIP API, making it easier for customers to prepare for post-quantum migrations.
The FIPS validation of Phio TX-EM ensures that the application meets strict federal security requirements, offering Cisco customers a verified path to quantum-resistant network security without immediate hardware upgrades. The certification process involved rigorous testing of the software’s cryptographic modules and key management practices, ensuring adherence to established security standards. This approach avoids the costs and disruptions typically associated with cryptographic overhauls.
Phio TX-EM operates as a container on Cisco Catalyst 8000 Series products and Nexus switches, utilizing existing network infrastructure. This design allows organizations to combat the growing threat of 'Harvest Now, Decrypt Later' attacks, where adversaries collect encrypted data with the intention of decrypting it once quantum computers become sufficiently powerful. The system supports large-key algorithms like classic McEliece and allows for dynamic algorithm updates, enabling organizations to adapt to evolving NIST and international standards without network downtime.
The software employs ephemeral keypairs, generated and deleted after each use, and uses out-of-band symmetric key delivery to enhance security. Static private or pre-shared keys are never stored, mitigating the risk of compromise. Continuous key rotation and intelligent key routing are integral to the software’s design, enabling secure key distribution across distributed, multi-site architectures, including Cisco DMVPN deployments. Quantum XChange’s Hive architecture provides unified key management across every network node, simplifying administration and enhancing overall security posture.
Phio TX-EM supports NIST 2023 Entropy Source Validation, providing true randomness in key generation for defense-in-depth assurance. The software’s ability to function within the Cisco ecosystem, coupled with its FIPS validation, positions it as a practical solution for organizations seeking to proactively address the quantum threat. By delivering quantum-safe keys directly to network devices, Phio TX-EM enables organizations to protect their data while maintaining the flexibility to adapt to future cryptographic advancements.