OFICIAL AWS What's New

Amazon RDS for PostgreSQL now supports post-quantum TLS key exchange

What happened
Based on AWS What's New · Sep 24, 2026

Amazon RDS for PostgreSQL now supports post-quantum TLS key exchange, enhancing encryption for data in transit via updated ssl_groups parameter in versions 18 and higher.

Amazon RDS for PostgreSQL now supports post-quantum TLS key exchange
AWS What's New — Amazon Web Services
Key points
·
Amazon RDS for PostgreSQL now supports post-quantum TLS key exchange in versions 18 and higher
·
Users can modify the ssl_groups parameter to select approved cryptographic groups for encryption
·
Configuration is available via Amazon RDS Management Console or AWS CLI

Amazon RDS for PostgreSQL has introduced support for post-quantum TLS (PQ-TLS) key exchange, enabling users to encrypt data in transit using post-quantum cryptography. This feature is available in RDS for PostgreSQL versions 18 and higher, allowing administrators to modify the ssl_groups parameter to select approved cryptographic groups. The update aligns with evolving security standards by providing options that resist quantum computing threats. Organizations can now integrate these advanced encryption methods into their managed PostgreSQL deployments without additional infrastructure complexity.

The new capability is integrated into Amazon RDS for PostgreSQL, which simplifies the setup, operation, and scaling of PostgreSQL databases in the cloud. Users can configure post-quantum TLS key exchange through the Amazon RDS Management Console or the AWS Command Line Interface (AWS CLI). This integration ensures that existing workflows remain unchanged while adding enhanced security measures. The feature is available immediately for supported versions, with no additional cost beyond standard RDS usage fees.

Post-quantum TLS key exchange support in Amazon RDS for PostgreSQL addresses the need for future-proof encryption as quantum computing advances. By allowing selection from a predefined allow list of cryptographic groups, the service provides flexibility to meet specific organizational security policies. This update reflects AWS’s ongoing commitment to integrating cutting-edge cryptographic standards into its managed database services. The feature is designed to be backward compatible with existing configurations.

Administrators managing RDS for PostgreSQL instances can now enable post-quantum TLS key exchange by updating the ssl_groups parameter to include approved cryptographic groups. The process is streamlined through familiar AWS tools, ensuring minimal disruption to existing operations. This enhancement strengthens the security posture of databases handling sensitive data, particularly in industries with stringent compliance requirements. The feature is available for all supported RDS for PostgreSQL versions 18 and higher.

Original source → Deals on Clipraptor.com →