Ph.D. thesis on post-quantum cryptography in TLS. Thom Wiggers investigates current proposals for post-quantum TLS, but more importantly proposes a more efficient TLS handshake that makes use of trade-offs presented by post-quantum cryptographic primitives (which were not as profound in pre-quantum primitives). This more efficient protocol we call KEMTLS. Benchmarks in several different settings for all variants of post-quantum TLS show that KEMTLS is efficient, and we also have an extensive analysis of the security of KEMTLS.

