BryanJacobs / FIDO2Applet

FIDO2 Javacard Applet
MIT License
63 stars 12 forks source link

Move attestation certificate private key into installation parameter #15

Closed StarGate01 closed 7 months ago

StarGate01 commented 7 months ago

The private key of the attestation certificate (S) is currently loaded using the vendor command.

However, in field deployment (e.g. Fidesmo), regular communication channels with the card are not encrypted like the installation session is (via Global Platform).