John Mattsson <[email protected]> wrote:
    > New comment from Laurance on GitHub pointing out that
    > proof-of-possesion is not enough. I think this point to that COSE
    > integrity protection of the end-entity certificate needs to be MUST.

I think that the example is incorrect.

If we have to protect End-Entity certificates, then we can just put in public
keys and save hundreds of bytes.

--
Michael Richardson <[email protected]>, Sandelman Software Works
 -= IPv6 IoT consulting =-



Attachment: signature.asc
Description: PGP signature

_______________________________________________
COSE mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/cose

Reply via email to