Skip to content

Commit

Permalink
slight reflow of §3.1
Browse files Browse the repository at this point in the history
Signed-off-by: Thomas Fossati <[email protected]>
  • Loading branch information
thomas-fossati committed Jan 8, 2025
1 parent 3cdeeaa commit aad4b81
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions draft-birkholz-cose-tsa-tst-header-parameter.md
Original file line number Diff line number Diff line change
Expand Up @@ -146,6 +146,8 @@ To minimize dependencies, the hash algorithm used for signing the COSE message S

The `3161-ctt` COSE _unprotected_ header parameter MUST be used for the mode described in {{sec-cose-then-timestamp}}.

The `3161-ctt` unprotected header parameter contains a DER-encoded RFC3161 TimeStampToken wrapped in a CBOR byte string (Major type 2).

The message imprint sent in the request to the TSA MUST be either:

* the hash of the signature field of the `COSE_Sign1` message.
Expand All @@ -154,8 +156,6 @@ The message imprint sent in the request to the TSA MUST be either:
In either case, to minimize dependencies, the hash algorithm SHOULD be the same as the algorithm used for signing the COSE message.
This may not be possible if the timestamp token has been obtained outside the processing context in which the COSE object is assembled.

The `3161-ctt` unprotected header parameter contains a DER-encoded RFC3161 TimeStampToken wrapped in a CBOR byte string (Major type 2).

# Timestamp Processing

RFC 3161 timestamp tokens use CMS as signature envelope format.
Expand Down

0 comments on commit aad4b81

Please sign in to comment.