%% You should probably cite rfc8554 instead of this I-D. @techreport{mcgrew-hash-sigs-13, number = {draft-mcgrew-hash-sigs-13}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-mcgrew-hash-sigs/13/}, author = {David McGrew and Michael Curcio and Scott Fluhrer}, title = {{Hash-Based Signatures}}, pagetotal = 60, year = 2018, month = sep, day = 6, abstract = {This note describes a digital signature system based on cryptographic hash functions, following the seminal work in this area of Lamport, Diffie, Winternitz, and Merkle, as adapted by Leighton and Micali in 1995. It specifies a one-time signature scheme and a general signature scheme. These systems provide asymmetric authentication without using large integer mathematics and can achieve a high security level. They are suitable for compact implementations, are relatively simple to implement, and naturally resist side-channel attacks. Unlike most other signature systems, hash-based signatures would still be secure even if it proves feasible for an attacker to build a quantum computer. This document is a product of the Crypto Forum Research Group (CFRG) in the IRTF.}, }