Skip to content

Commit f38f8bb

Browse files
SteveLaskerOR13
andauthored
Update draft-ietf-scitt-architecture.md
Co-authored-by: Orie Steele <[email protected]>
1 parent 6bb7789 commit f38f8bb

File tree

1 file changed

+3
-1
lines changed

1 file changed

+3
-1
lines changed

draft-ietf-scitt-architecture.md

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -397,7 +397,9 @@ Multi-tenant support can be enabled through the use of identifiers in the `iss`
397397

398398
Registration Policies refer to additional checks over and above the Mandatory Registration Checks that are performed before a Signed Statement is accepted to be registered to the Append-only Log.
399399

400-
Transparency Services MUST maintain Registration Policies and a list of trust anchors to authenticate Issuers upon Registration.
400+
Transparency Services MUST maintain Registration Policies.
401+
Transparency Services MUST maintain a list of trust anchors as described in _TBD_.
402+
Transparency Services MUST authenticate signed statements as part of a Registration Policy.
401403
For instance, a trust anchor could be an X.509 root certificate, a pointer to an OpenID Connect identity provider, or any other COSE-compatible trust anchor.
402404

403405
Registration Policies and trust anchors MUST be made transparent and available to all Relying Parties of the Transparency Service by registering them as Signed Statements on the Append-only Log, and distributing the associated Receipts.

0 commit comments

Comments
 (0)