QNSI

Build Pattern · Go

Evaluate PQC Authentication Between Internal Services

Reference architecture for PQC-native service authentication and explicit composite interoperability. Production mTLS and ML-DSA SVID behavior is NOT VERIFIED.

This reference architecture defines PQC-native confidentiality and authenticity as the internal target. X25519MLKEM768 may appear only at an explicitly selected composite-interop boundary. The repository contains SPIFFE URI policy handling but no verified ML-DSA SVID issuance path; production mesh, mTLS, certificate rotation, and ML-DSA SVID behavior are NOT VERIFIED.

Verification boundary: No independently verified service-mesh execution path exists for this architecture. PQC mTLS, SVID issuance, certificate rotation, audit coverage, and deployment behavior remain NOT VERIFIED.

NOT VERIFIEDDeployment timing
GoPrimary SDK
3Source surfaces

QNSI services used

Stack

Verification boundary

Reference architecture - NOT VERIFIED

No executable integration snippet is published for this pattern because the required end-to-end SDK and production path have not been independently verified.

No independently verified service-mesh execution path exists for this architecture. PQC mTLS, SVID issuance, certificate rotation, audit coverage, and deployment behavior remain NOT VERIFIED.

Evaluate

Inspect the source-linked integration surface