DI Management Home > Cryptography > SLH-DSA > Merkle Tree

Merkle Tree


The concept of a Merkle Tree as a binary authentication tree was introduced in [MER79].

Merkle Tree with $n=8$

Merkle Tree

Authenticating the leaf values

For a more detailed treatment of authenticating the tree see the next page Authentication Path for a Merkle Tree.

Benefits of using a Merkle Tree

A warning about Merkle trees

A Merkle Signature Scheme

We can use the Merkle tree construction to generate N one-time signatures. We call this an N-time OTS scheme.

For more details, see our page Basic Merkle Signature Scheme. We don't actually use that scheme in SLH-DSA, but include it here for completeness.

Chinese translation

Zhanglu Wang has kindly translated this page to Chinese on the CSDN site Merkle 树. Thank you Wang.

Rate this page

Contact us

To comment on this page or to contact us, please send us a message.

This page first published 17 March 2023. Last updated 30 August 2026.