DI Management Home > Cryptography > SLH-DSA > Merkle Tree

Merkle Tree


The concept of a Merkle Tree as a binary authentication tree was introduced in [MER79].

Merkle Tree with $n=8$

Merkle Tree

Authenticating the leaf values

Benefits of using a Merkle Tree

A warning about Merkle trees

A Merkle Signature Scheme

We can use the Merkle tree construction to generate N one-time signatures. We call this an N-time OTS scheme.

For more details, see our page Basic Merkle Signature Scheme. We don't actually use that scheme in SLH-DSA, but include it here for completeness.

<< previous: Winternitz One-Time Signature (WOTS) Contents next: Authentication Path for a Merkle Tree >>

Rate this page

Contact us

To comment on this page or to contact us, please send us a message.

This page first published 17 March 2023. Last updated 16 February 2026.