Skip to content

delegated targets are authorized by keys in the delegating target roles #60

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 1 commit into from
Nov 8, 2019
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
7 changes: 7 additions & 0 deletions tuf-spec.md
Original file line number Diff line number Diff line change
Expand Up @@ -462,6 +462,9 @@ repo](https://github.com/theupdateframework/specification/issues).

/ANOTHER_ROLE.json

Delegated target roles are authorized by the keys listed in the directly
delegating target role.

## **4. Document formats**

All of the formats described below include the ability to add more
Expand Down Expand Up @@ -837,6 +840,10 @@ repo](https://github.com/theupdateframework/specification/issues).
}, ... ]
}

"keys" lists the public keys to verify signatures of delegated targets roles.
Revocation and replacement of delegated targets roles keys is done by
changing the keys in this field in the delegating role's metadata.

ROLENAME is the name of the delegated role. For example,
"projects".

Expand Down