Quarkus 3.39 - Post-quantum cryptography support in TLS registry
We’re pleased to announce the release of Quarkus 3.39.
Quarkus 3.39 will be the base for our next 3.40 LTS release, so we encourage everyone to migrate to this version as soon as possible to help us identify and fix any remaining issues before the LTS release.
As most of the development effort for new features and major upgrades is now focused on Quarkus 4, this release is lighter on features than usual. It still comes with the following notable changes:
Update
To update to Quarkus 3.39, we recommend updating to the latest version of the Quarkus CLI and run:
quarkus update
Note that quarkus update can update your applications from any version of Quarkus (including 2.x) to Quarkus 3.39.
For more information about the adjustments you need to make to your applications, please refer to the Quarkus 3.39 migration guide.
What’s new?
Post-quantum cryptography (PQC) support in TLS registry
Quarkus 3.39 introduces support for post-quantum cryptography (PQC) in the TLS registry, wiring the Vert.x PQC API through the HTTP server, HTTP client, REST client, and mailer.
Three new configuration properties are available:
-
quarkus.tls.key-exchange-groups: an ordered list of TLS key exchange groups, allowing you to specify post-quantum key exchange algorithms such as ML-KEM. -
quarkus.tls.pqc-enforcement-policy: controls how strictly PQC is enforced, with three modes:strict(PQC required),client-negotiated(prefer PQC but fall back to classical), andrelaxed(no enforcement). -
quarkus.tls.ssl-engine: allows overriding the auto-selection of the SSL engine (opensslorjdkssl), useful when specific PQC algorithms are only available in one engine.
This lays the groundwork for quantum-resistant TLS connections as post-quantum standards are being adopted.
Reflection-free Jackson serializers reverted to opt-in
The reflection-free Jackson serializers, which were enabled by default in a previous release, have been reverted to opt-in in Quarkus 3.39.
While significant progress has been made in stabilizing this feature, some issues remain and it was not considered ready to be the default for the upcoming LTS release.
If you were relying on the reflection-free serializers, you can re-enable them by setting quarkus.rest.jackson.optimization.enable-reflection-free-serializers to true in your application.properties.
プラットフォームの更新
Component upgrades
様々なプラットフォームコンポーネントがアップグレードされました。以下が含まれます。
-
Camel Quarkus to 3.39.0
-
Quarkus CXF to 3.39.1 (3.39.0 release notes, 3.39.1 release notes)
-
Quarkus Flow to 1.0.0
-
Quarkus LangChain4j to 1.13.0
-
Quarkus Operator SDK to 7.8.0
-
Quarkus Qpid JMS to 2.13.0
完全な変更履歴
You can get the full changelog of 3.39.0.CR1 and 3.39.0 on GitHub.
コントリビューター
The Quarkus community is growing and has now 1230 contributors. Many many thanks to each and everyone of them.
In particular for the 3.39 release, thanks to aarti-1108, Adrian Pauli, Alexandre Dutra, Alexey Loubyansky, Andreas Maechler, Aurea Munoz, cfitzw, Charles Moulliard, Clement Escoffier, cnbehr, Cristiano Nicolai, Eric Deandrea, Finn Petersen, Fouad Almalki, Gaelle Fournier, George Gastaldi, Georgios Andrianakis, Guillaume Smet, Holly Cummins, Jakub Jedlicka, James R. Perkins, Jan Martiska, jnbdz, Julien Ponge, Kamil Krzywanski, Katia Aresti, Keshav Deshpande, Ladislav Thon, luneo7, mariofusco, marko-bekhta, Martin Kouba, Martin Panzer, Matej Novotny, MdTanwer, Michal Maléř, Michal Vavřík, Moritz Heine, Ozan Gunalp, Peter Zaoral, Phillip Krüger, PrabinDevkota, Robert Stupp, Robert Toyonaga, Rolfe Dlugy-Hegwer, Sakshi Chitnis, Samuel Ferreira, Sanne Grinovero, Sergey Beryozkin, Severin Gehwolf, Simon Wick, simrankhanna, Steve Hawkins, Ståle Pedersen, Stéphane Épardaud, Teymur Babayev, Timur Rakhmatullin, Tom Fenwick, Willem Jan Glerum, xstefank, and Yoann Rodière.
参加のお誘い
私達は皆様からのフィードバックに重きを置いています。バグ報告、改善要望を是非お願いします。一緒に素晴らしいものを作り上げていきましょう!
Quarkusユーザーの場合でも、単に興味を持っているだけの場合でも、恥ずかしがらずにコミュニティに参加して下さい!:
-
GitHub でフィードバック
-
コードを作成し、 プルリクエスト を送信
-
Stack Overflow で質問