Closed obgm closed 7 years ago
Looks good.
I have put in the following change that has been suggested by email and close this issue:
Ludwig Seitz <ludwig.seitz@ri.se> writes:
> Ok I'd suggest the following rewording then:
>
> The identifiers for the map keys "kid" and "access_token" are used
> with the same meaning as in COSE [I-D.ietf-cose-msg] and the ACE
> framework [I-D.ietf-ace-oauth-authz] respectively. The identifier ...
Ludwig pointed out that Section 4.1 first makes the AT in psk_identity optional, allowing this field to carry a key identifier (which is the intended behavior).
Later, it says that RS "MUST" check if the psk_identity contains a syntactically valid Access Token, and terminate the DTLS session otherwise.
To solve this, the following change is proposed:
OLD:
NEW: