%% You should probably cite draft-irtf-cfrg-rsa-guidance-10 instead of this revision. @techreport{irtf-cfrg-rsa-guidance-09, number = {draft-irtf-cfrg-rsa-guidance-09}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-irtf-cfrg-rsa-guidance/09/}, author = {Alicja Kario}, title = {{Implementation Guidance for the PKCS \#1 RSA Cryptography Specification}}, pagetotal = 48, year = 2026, month = jun, day = 26, abstract = {This document specifies additions to RFC 8017. Specifically, it provides guidance to implementers of the standard to protect against side-channel attacks. It also recommends against the RSAES-PKCS-v1\_5 encryption scheme, and provides an alternative depadding algorithm that protects against side-channel attacks raising from users of vulnerable APIs. The purpose of this specification is to increase security of RSA implementations. The document is a product of the Crypto Forum Research Group (CFRG).}, }