Skip to content

Commit 5283b25

Browse files
authored
Remove text about publishing private keys (#460)
1 parent 81b1a3e commit 5283b25

File tree

1 file changed

+0
-6
lines changed

1 file changed

+0
-6
lines changed

draft-ietf-oauth-selective-disclosure-jwt.md

Lines changed: 0 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -1326,12 +1326,6 @@ respective Disclosures if they contain privacy-sensitive data. It may be
13261326
sufficient to store the result of the verification and any End-User data that is
13271327
needed for the application.
13281328

1329-
If reliable and secure key rotation and revocation is ensured according
1330-
to (#issuer_signature_key_distribution), Issuers may opt to publish
1331-
expired or revoked private signing keys (after a grace period that
1332-
ensures that the keys are not cached any longer at any Verifier). This
1333-
reduces the value of any leaked credentials as the signatures on them
1334-
can no longer be trusted to originate from the Issuer.
13351329

13361330

13371331
## Confidentiality during Transport

0 commit comments

Comments
 (0)