@lanodan @jpgoldberg @feld @cendyne @drwho It absolutely is related. Assume something like signed Diffie-Hellman to establish a session key. DH, including ECDH, can be cracked by a quantum computer; rotating the signing keys doesn't help. Changing DH moduli more frequently might increase the cost to the attacker, since they can no longer precompute stuff for a fixed modulus, but they can still crack the new one. And there is stuff that is kept classified for decades—I've seen the redactions.