July 21, 2026
Quantum panic goes baguette-mode
France's Anssi Will Block PQC-Free Products from Certification Starting 2027
France just told tech vendors: no future-proof security, no official approval
TLDR: France says products without next-generation encryption protection won’t get official cybersecurity approval from 2027, raising the stakes for vendors selling to government and critical services. Commenters are split between applauding smart long-term planning and mocking it as expensive panic over a threat that may still be years away.
France has officially entered its "upgrade now or get locked out" era. The country’s top cybersecurity agency, ANSSI, says that starting in 2027 it will stop approving security products that don’t include protection designed for a future where quantum computers might crack today’s encryption. In plain English: if your product isn’t ready for the next big security threat, it may be shut out of French government and critical infrastructure deals. That is a huge market, and the community immediately smelled both urgency and chaos.
The comments split into two very online camps. Team "this is responsible planning" pointed out that ANSSI has been obsessing over this for years, with one commenter saying the agency was already grilling people about "Q day" and post-quantum plans at technical meetings. To them, France looks serious, prepared, and maybe a little ahead of everyone else. Team "slow down, this is panic mode" was much louder and snarkier: one user joked that by 2050 we may look back at this whole migration frenzy as a comedy of overreaction, complete with slower internet handshakes and years of pain for a threat that may still be far off.
And then came the practical drama: Will old approved products get kicked out too? That question hung over the thread like a guillotine. Others jumped in just to decode the alphabet soup, linking NIST’s explainer for bewildered readers. So yes, this is a story about national security and future-proofing—but in the comments, it became a classic internet brawl between the preppers, the skeptics, and the exhausted people who just want their secure connections to stay fast.
Key Points
- •ANSSI said it will stop certifying security products without quantum-resistant encryption starting in 2027.
- •ANSSI certification is required for deployment across French government agencies and critical infrastructure operators, making the rule commercially significant.
- •Samih Souissi said businesses should purchase only quantum-safe products by 2030.
- •The article links the policy to concerns over Harvest Now, Decrypt Later attacks and the future availability of cryptographically relevant quantum computers.
- •Industry participants including Capgemini, IBM, Qperfect, and OVHcloud said demand, threat assessment, and compliance work around post-quantum cryptography are increasing.