Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

NIST to Update Special Publication 800-56A and Revise 800-56C
January 06, 2026

After receiving public comments in response to its July 2025 proposal, NIST has decided to maintain the Special Publication (SP) 800-56 reports as follows:

See an explanation of these decision options.

The main goals of updating SP 800-56Ar3 are to:

  • Approve x-coordinate-only implementations of certain Elliptic Curve Cryptography (ECC) key-agreement schemes that are widely adopted and essentially equivalent to the existing specifications
  • Align with the curve requirements that are already specified in SP 800-186
  • Improve the editorial quality

Presently, NIST will not change SP 800-56Br2. After SP 800-56Ar3 is updated and SP 800-56Cr2 is revised, SP 800-56Br2 will be updated to cite the current editions of all references.

The main goals of revising SP 800-56Cr2 are to:

  • Allow the shared secret Z to incorporate a shared secret obtained from an approved key-encapsulation mechanism (KEM)
  • Allow greater flexibility in the formatting of hybrid shared secrets
  • Approve KMAC (Keccak Message Authentication Code) as an option in the two-step key derivation method, for the randomness extraction step (in addition to the expansion step)

More details of this review are available at NIST’s Crypto Publication Review Project site. Monitor progress on CSRC News and CSRC Publications, and by subscribing to email updates

Parent Project

See: Crypto Publication Review Project

Related Topics

Security and Privacy: key management

Activities and Products: standards development

Created December 31, 2025, Updated January 06, 2026