- changed status to open
MTLS section readability
Issue #693
open
5.2.2.2. MTLS ecosystems
MTLS ecosystems may implement MTLS to govern access to the ecosystem independently from MTLS being used for client authentication or token binding.
[Rifaat] I am not sure what this means. mTLS, as compared to TLS, is essentially for client authentication. So, what is meant by “govern access” beyond that?
[Rifaat] Is token binding an option?
MTLS ecosystems should provide the trust list of the certificate authorities to ease integration, security and interoperability concenrs.
[Rifaat] Typo: concenrs -> concerns
[Rifaat] Is not that the default case? What is unique about FAPI 2.0?
Comments (3)
-
reporter -
reporter -
assigned issue to
-
assigned issue to
-
reporter - Log in to comment