ace-wg / ace-key-groupcomm-oscore

Other
0 stars 1 forks source link

Section 6 - does kdcnonce need to be provided on a token post from a monitor-only? #34

Closed marco-tiloca-sics closed 4 years ago

marco-tiloca-sics commented 4 years ago

It's not needed if the token authorizes the client to be only monitor in all the groups covered in the token.

Is it worth addressing and implementing this optimization? Or rather to just return a kdcnonce even in such a case, even thoug that joining node is not going to use the received kdcnonce to build a signature challenge?

jimsch commented 4 years ago

I don't know if it is worth it or not, that is a question that could be left to the implementer if it the field is optional rather than required.