Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Missing documentation: broker service #51

Open
hackerfactor opened this issue Mar 16, 2024 · 1 comment
Open

Missing documentation: broker service #51

hackerfactor opened this issue Mar 16, 2024 · 1 comment

Comments

@hackerfactor
Copy link

The specifications section 4.1 mentions a "broker service". https://c2pa.org/specifications/specifications/1.4/attestations/attestation.html#_trust_brokers_and_rats

  1. Is this related to the "known certificate" list? (ref: Missing documentation: known certificate list #50)
  2. How does a verifying service identify the list of broker services?
  3. The existing documentation (section 4.1) references RFC9334. This RFC describes a high-level process (architecture overview) but not the specific implementation for the query. Assuming the verifying service can identify a broker service, what protocol is used to query the service?
@lrosenthol
Copy link
Contributor

The Broker Service is specific to Attestations - which is an extension to the Trust Model of C2PA. This is described in the Attestation spec at https://c2pa.org/specifications/specifications/1.4/attestations/attestation.html#_c2pa_trust_model_overview

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants