Difference between revisions of "Attested"
From MgmtWiki
(→Context) |
(→Problem) |
||
| Line 7: | Line 7: | ||
==Problem== | ==Problem== | ||
| − | + | * When a secure operation is performed at a user location, the packet returned from that [[User Device]] needs to be trusted by the [[Site]] that receives it. | |
| − | + | * The signing key for that packet will have a certificate that binds that signing key to a particular device. | |
==Solution == | ==Solution == | ||
Revision as of 17:43, 30 August 2018
Full Title or Meme
A statement is Attested if some Trusted Third Party can create a Validated Claim about a User Device used during either Authentication or Authorization.
Context
- The Context in which an Attestation of Identity applies is typically during the testing of the security of protection offered to User secrets, such as Credentials. in a User Agent.
Problem
- When a secure operation is performed at a user location, the packet returned from that User Device needs to be trusted by the Site that receives it.
- The signing key for that packet will have a certificate that binds that signing key to a particular device.
Solution
References
- Synonyms include: Assurance Corroborated Validated.