Post-Quantum Cryptography for Web Authentication Protocols: A Systematic Review of OAuth 2.0, OpenID Connect, and SAML Migration

dc.contributor.authorDissanayake, R
dc.contributor.authorWijesinghe, H
dc.contributor.authorVindinu, J
dc.contributor.authorJayasinghe, K
dc.contributor.authorAbeywardena, K
dc.contributor.authorSenarathne, A
dc.date.accessioned2026-05-25T06:59:10Z
dc.date.issued2026-03-19
dc.description.abstractOAuth 2.0, OpenID Connect (OIDC), and SAML rely on classical public-key primitives such as RSA and ECDSA, which are vulnerable to quantum attacks via Shor's algorithm. This systematic review examines migration of these protocols to Post-Quantum Cryptography (PQC) following the 2024 NIST standardization of ML-DSA and ML-KEM. We map cryptographic dependencies across all three protocols, evaluate NIST-standardized algorithms for authentication use cases, and analyze practical migration challenges. Token size explosion, with ML-DSA-65 signatures approximately 52 times larger than ECDSA P-256, represents the dominant implementation barrier, compounded by incomplete JOSE standardization and limited ecosystem maturity. Missing formal security proofs and federation migration frameworks are identified as critical priorities before production deployment.
dc.identifier.doiDOI: 10.1109/ISDFS69419.2026.11459000
dc.identifier.issn27681831
dc.identifier.urihttps://rda.sliit.lk/handle/123456789/5052
dc.language.isoen
dc.publisherInstitute of Electrical and Electronics Engineers Inc.
dc.relation.ispartofseriesProceedings of the International Symposium on Digital Forensics and Security, ISDFS
dc.subjectWeb Authentication
dc.subjectPost-Quantum Cryptography
dc.subjectSAML
dc.subjectOpenID Connect
dc.subjectOAuth 2.0
dc.subjectML-KEM
dc.subjectML-DSA
dc.titlePost-Quantum Cryptography for Web Authentication Protocols: A Systematic Review of OAuth 2.0, OpenID Connect, and SAML Migration
dc.typeArticle

Files

Original bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
Post-Quantum_Cryptography_for_Web_Authentication_Protocols_A_Systematic_Review_of_OAuth_2.0_OpenID_Connect_and_SAML_Migration.pdf
Size:
359.33 KB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.69 KB
Format:
Item-specific license agreed upon to submission
Description: