Add one bullet describing optionality to enroll static DH keys. Something like:
The PKCS#10 request MAY request a certificate for a static DH key instead of a signature key resulting in a more compact CSR with a MAC instead of a signature. Additionally, subsequent EDHOC sessions using static DH keys for authentication has less overhead that key exchange protocols using signature based authentication credentials.
Add one bullet describing optionality to enroll static DH keys. Something like:
The PKCS#10 request MAY request a certificate for a static DH key instead of a signature key resulting in a more compact CSR with a MAC instead of a signature. Additionally, subsequent EDHOC sessions using static DH keys for authentication has less overhead that key exchange protocols using signature based authentication credentials.