I have been trying to get my JOSE implementation back up to snuff because it
turns out that I need it for some of the ACE work.  Part of that means that
I am producing unit tests and making sure that each of the pieces works
correctly.  As part of that effort I ended up producing the attached file.
As near as I can tell from diving through the JWE and JWS specifications,
this is a legal JWE and JWS file.

1.  Please point me to the text in the two documents which says that this is
not a legal message.
2.  If the text does not exist, was it meant to be a legal message?
3.  If it was not meant to be a legal message, can we get some text to add
to both of the documents so that this will be detected as an illegal
message.

For people wishing to validate the message(s), I used the keys from the
cookbook.

Jim

{
  "unprotected": {"enc": "A128GCM"},
  "iv": "8D05pFR6sRBI_qLB",
  "ciphertext": "TNDWlhWL5yHj8jNjAERwmTAxYK11GUp0w_vVCds",
  "tag": "kAY2vLPGpFGpaBa3POQuMA",
  "recipients": [
    {
      "header": {"alg": "A128KW", "kid": 
"81b20965-8332-43d9-a468-82160ad91ac8", "enc": "A128GCM"},
      "encrypted_key": "vh7xXnKzvZi8KuBnchCiOgiQtZntt9Kk"
    }
  ],
  "payload": "VGhpcyBpcyB0aGUgTUFDLWVkIG1lc3NhZ2U",
  "signatures": [
    {
      "header": {"kid": "[email protected]", "alg": "ES512"},
      "signature": 
h'0101302E061F77B0A6E08EE6FE5233E6C4903D1F3BFF2C243C7CA8B336E59AF7C06F1BD985054EA36556648E3099211546CC030AD3B90CFE1B3B53578670298108A828F1799FE0CA1FBE29BE1AA57F1724FB640E36DB613234BA9F1B0C38FC026AF44BA59CDA64FB9C64FB1206A5A6F12D62E35A8E9DDD3DA3D60D08E5A184C92D1AE6'
    }
  ]
}
_______________________________________________
jose mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/jose

Reply via email to