%% You should probably cite draft-ietf-lamps-cms-cek-hkdf-sha256 instead of this I-D. @techreport{housley-lamps-cms-cek-hkdf-sha256-01, number = {draft-housley-lamps-cms-cek-hkdf-sha256-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-housley-lamps-cms-cek-hkdf-sha256/01/}, author = {Russ Housley}, title = {{Encryption Key Derivation in the Cryptographic Message Syntax (CMS) using HKDF with SHA-256}}, pagetotal = 14, year = 2024, month = jan, day = 3, abstract = {This document specifies the derivation of the content-encryption key or the content-authenticated-encryption key in the Cryptographic Message Syntax (CMS). The use of this mechanism provides protection against where the attacker manipulates the content-encryption algorithm identifier or the content-authenticated-encryption algorithm identifier.}, }