@chrisvest Algorithm agility will be achieved by "versioned protocols".
The protocol versions will allow only one cryptography algorithm per version.
The implementation details here are whether v1 should remain ed25519 (since this isn't deployed anywhere yet) or mldsa44.
I expect v2 (circa 2030?) will use one of these: https://csrc.nist.gov/projects/pqc-dig-sig/round-2-additional-signatures
Official comments on the Second Round Candidates should be submitted using the 'Submit Comment' link for the appropriate algorithm. Comments from the pqc-forum Google group subscribers will also be forwarded to the pqc-forum Google group list. We will periodically post and update the comments received to the appropriate algorithm. All relevant comments will be posted in their entirety and should not include PII information in the body of the email message. Please refrain from using OFFICIAL COMMENT to ask administrative questions, which should be sent to [email protected]. The rationale for choosing the Round 2 Candidates is described in NIST IR 8528, Status Report on the First Round of the Additional Digital Signature Schemes for the NIST Post-Quantum Cryptography Standardization Process History of Round 2 Updates Code-based Signatures Algorithm Algorithm Information Submitters Comments CROSS Codes and Restricted Objects Signature Scheme Specification...