%% You should probably cite draft-reddy-tls-composite-mldsa-09 instead of this revision. @techreport{reddy-tls-composite-mldsa-07, number = {draft-reddy-tls-composite-mldsa-07}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-reddy-tls-composite-mldsa/07/}, author = {Tirumaleswar Reddy.K and Tim Hollebeek and John Gray and Scott Fluhrer}, title = {{Use of Composite ML-DSA in TLS 1.3}}, pagetotal = 12, year = , month = , day = , abstract = {Compositing the post-quantum ML-DSA signature with traditional signature algorithms provides protection against potential breaks or critical bugs in ML-DSA or the ML-DSA implementation. This document specifies how such a composite signature can be formed using ML-DSA with RSA-PKCS\#1 v1.5, RSA-PSS, ECDSA, Ed25519, and Ed448 to provide authentication in TLS 1.3.}, }