Skip to content

draft-ietf-oauth-selective-disclosure-jwt-07

Choose a tag to compare

@bc-pi bc-pi released this 11 Dec 17:33
· 90 commits to master since this release
bc5da6b

-07

  • Reference RFC4086 in security considerations about salt entropy
  • Update change controller for the Structured Syntax Suffix registration from IESG to IETF per IANA suggestion
  • Strengthen security considerations around claims controlling the validity of the SD-JWT not being selectively disclosable
  • Expand/rework considerations on the choice of hash algorithm
  • Clarify validation around no duplicate digests in the payload (directly or recursively) and no unused disclosures at the end of processing
  • Better describe and illustrate the tilde separated format
  • Change claim name from _sd_hash to sd_hash