Hello all,

As has been indirectly discussed previously, Peter Saint-Andre and I have been 
working on secure delegation; how a source domain (e.g., example.com) can prove 
it has delegated some non-HTTP service to another domain (e.g., 
hosting.example.net), without handing over things like private keys.  One of 
the possible solutions we've developed is [POSH].

Of direct interest for JOSE is that POSH (ab)uses JWK Set objects as the 
content format.

Any feedback this group can provide would be greatly appreciated.  The 
discussion forum is < [email protected] >.


Thanks!

- m&m

Matt Miller < [email protected] >
Cisco Systems, Inc.

[POSH] :: PKIX over Secure HTTP (POSH) < 
http://tools.ietf.org/html/draft-miller-posh-00 >

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
jose mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/jose

Reply via email to