On Mon, Feb 20, 2023 at 10:55:01AM -0700, Laurence Lundblade wrote:
> 
> Or reverse it and define some new parameters for a COSE_Key that
> replace the ones that hold the key. The new ones have a COSE_Encrypt0
> in them. Again, you can mostly use off-the-shelf COSE components to
> implement this.

Or yet another way: Encrypt the value of the single private bstr and
stick resulting tagged COSE_Encrypt(0) into the corresponding field.

However, if you do this with Ed25519 or Ed448 keys, make sure the
public key gets authenticated (e.g., external ad), or you got a nasty
security hole!



-Ilari

_______________________________________________
COSE mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/cose

Reply via email to