WireGuard and Headscale / Tailscale don’t use Post-Quantum Cryptography. Adversaries recording that traffic today will decrypt it when quantum hardware arrives.
The wolfCrypt PQC ML-KEM and ML-DSA implementations are production-ready, and FIPS validation is in process.
We’ve already integrated post-quantum key exchange into TLS, DTLS, SSH, and MQTT. WireGuard is next. The engineering path is clear.
Interested in PQC WireGuard? Contact us at facts@wolfssl.com or +1 425 245 8247.
Download wolfSSL Now

