ConsumerDataStandardsAustralia / infosec

Work space for the consumer data right information security profile development in Australia
MIT License
16 stars 5 forks source link

Add more detail to Client Authentication section. #19

Closed ajmcmiddlin closed 5 years ago

ajmcmiddlin commented 5 years ago

The Client Authentication section mentions the "Directory Issuer metadata", but it's not clear to me what this is. A hyperlink or description would be helpful.

Furthermore, I think it would be helpful to be explicit about when client authentication is used and how it differs to MTLS as a holder of key mechanism.

lukepopp commented 5 years ago

I believed this is now fixed.