View Issue Details

IDProjectCategoryView StatusLast Update
001025810000-012: DiscoverySpecpublic2025-05-20 15:50
ReporterRandy Armstrong Assigned ToRandy Armstrong  
PriorityhighSeverityminorReproducibilityalways
Status assignedResolutionopen 
Product Version1.05.05 RC2 
Target Version1.05.06 
Summary0010258: Need a Way to provide Proof of Origin with CSRs.
Description

Document how to bundle a CSR in a JWT with a Signature produced by the Application/Device Certificate
Add a SupportedCSRFormats property to CertificateManager.
CertificateManager can detect PKCS10 or JWS format in a ByteString so no change to Method needed.
For Push, need a new Method CreateSigningRequestWithProofOfOrigin.
The Server uses the Certificate it is using for the SecureChannel used to call CreateSigningRequestWithProofOfOrigin to create a signature in the JWS.
Server returns a JWS with a CSR and a Signature.
Need to document the format of the JWS format (i.e. payload == CSR, add signature + chain etc).

TagsNo tags attached.
Commit Version
Fix Due Date

Activities

There are no notes attached to this issue.

Issue History

Date Modified Username Field Change
2025-03-26 15:47 Randy Armstrong New Issue
2025-04-01 15:06 Jim Luth Assigned To => Randy Armstrong
2025-04-01 15:06 Jim Luth Status new => assigned
2025-04-01 15:07 Jim Luth Commit Version => 1.05.06 RC1
2025-04-01 15:07 Jim Luth Fix Due Date => 2025-05-15
2025-05-20 15:50 Jim Luth Commit Version 1.05.06 RC1 =>
2025-05-20 15:50 Jim Luth Fix Due Date 2025-05-15 =>