%% You should probably cite draft-irtf-cfrg-rsa-guidance-10 instead of this revision. @techreport{irtf-cfrg-rsa-guidance-08, number = {draft-irtf-cfrg-rsa-guidance-08}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-irtf-cfrg-rsa-guidance/08/}, author = {Alicja Kario}, title = {{Implementation Guidance for the PKCS \#1 RSA Cryptography Specification}}, pagetotal = 48, year = , month = , day = , abstract = {This document specifies additions and amendments to RFC 8017. Specifically, it provides guidance to implementers of the standard to protect against side-channel attacks. It also deprecates the RSAES- PKCS-v1\_5 encryption scheme, and provides an alternative depadding algorithm that protects against side-channel attacks raising from users of vulnerable APIs. The purpose of this specification is to increase security of RSA implementations. The document is a product of the Crypto Forum Research Group (CFRG).}, }