On 2022-03-21 19:18, Benjamin Kaduk wrote:
<snip>
So, if you make it required that you have exactly one of 'kid' or 'intkid',
you need signaling to know which one to use. If you have that signaling,
it's not a huge stretch to instead use the signaling for "okay, 'kid' can
be int now".
+1
Most signature schemes need to be profiled anyway. In a use case where every
byte counts, RSA keys would for example not be accepted.
Anders
_______________________________________________
COSE mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/cose