I'm not sold on the risk from quantum computers, but we need to be clear:
RSA's demise is not due quantum computers. RSA is at this point fairly well understood to be worse than ECC in more or less every sense other than "can I explain this to a 12 year old". Nothing new should use RSA, anything old should be migrated to ecc.
RSA's demise is not due quantum computers. RSA is at this point fairly well understood to be worse than ECC in more or less every sense other than "can I explain this to a 12 year old". Nothing new should use RSA, anything old should be migrated to ecc.