Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Lack of clarity on Authority around Unsigned CoRIM Map #342

Open
yogeshbdeshpande opened this issue Oct 30, 2024 · 2 comments
Open

Lack of clarity on Authority around Unsigned CoRIM Map #342

yogeshbdeshpande opened this issue Oct 30, 2024 · 2 comments

Comments

@yogeshbdeshpande
Copy link
Collaborator

Current specification (06) has no clear way of determining the authority around unsigned corim map

@nedmsmith
Copy link
Collaborator

Current specification (06) has no clear way of determining the authority around unsigned corim map

The idea behind unsigned-corim-map is that a conveyance protocol or some outer wrapper layer (e.g., CWT) supplies the signature. The verifier will know what context supplied the signature. It may not be something the CoRIM spec can anticipate.

@yogeshbdeshpande
Copy link
Collaborator Author

There should be a clarifying text in the CoRIM which should state, that authority is out of band for the case of unsigned-corim-map, simply to make the document look more complete!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants