Skip to content

Signer ID required in IAT by PSA-SM? #4

@stevew817

Description

@stevew817

@athoelke the documentation in this repo states that the signer ID of a claimed software component in the IAT does not need to be present in the token, though adhering to the PSA-SM would require that field being present. Since the PSA-SM doesn't have that many implementation specs, that phrase was surprising to us. Could you elaborate on where in the PSA-SM this requirement is presented?

https://github.com/ARM-software/psa-api/blame/5f2148fa55c61dc64abbe63eba16057fdd2338fe/doc/attestation/overview/report.rst#L140-L147

Metadata

Metadata

Assignees

No one assigned

    Labels

    Attestation APIIssue or PR related to the Attestation APIquestionFurther information is requested

    Type

    No type

    Projects

    Status

    New

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions