@techreport{afrvrd-dnsop-stateful-hbs-for-dnssec-00, number = {draft-afrvrd-dnsop-stateful-hbs-for-dnssec-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-afrvrd-dnsop-stateful-hbs-for-dnssec/00/}, author = {Andrew Fregly and Roland van Rijswijk-Deij}, title = {{Stateful Hash-based Signatures For DNSSEC}}, pagetotal = 30, year = 2022, month = mar, day = 2, abstract = {This document describes how to use stateful hash-based signature schemes (SHBSS) with the DNS Security Extensions (DNSSEC). The schemes include the Hierarchical Signature System (HSS) variant of Leighton-Micali Hash-Based Signatures (HSS/LMS), the eXtended Merkle Signature Scheme (XMSS), and XMSS Multi-Tree (XMSS\textasciicircum{}MT). In addition, DNSKEY and RRSIG record formats for the signature algorithms are defined and new algorithm identifiers are described.}, }