haskell-mafia / zodiac

API request-signing utilities
BSD 3-Clause "New" or "Revised" License
2 stars 2 forks source link

Threat model draft #7

Closed olorin closed 8 years ago

olorin commented 8 years ago

Plus moving over the HMAC protocol draft from tinfoil. Particularly interested in feedback on the threat model - what have I missed here that's important?

Also, copy over (lightly edited for context) HMAC notes from tinfoil.

On top of #3 (diff).

@markhibberd @erikd-ambiata @thumphries @nhibberd

olorin commented 8 years ago

Updated symmetric protocol sketch to reflect the current planned implementation.

olorin commented 8 years ago

@markhibberd look okay now?