W3C home > Mailing lists > Public > public-webcrypto@w3.org > May 2013

Additional use cases

From: Lu HongQian Karen <karen.lu@gemalto.com>
Date: Mon, 6 May 2013 18:38:35 +0200
To: Arun Ranganathan <arun@mozilla.com>, "public-webcrypto@w3.org Working Group" <public-webcrypto@w3.org>
Message-ID: <1126F161F6F1B24FABD92B850CAFBD6E02B4E538794B@CROEXCFWP04.gemalto.com>
Hi Arun,

Here are the two use cases that I have talked about at the recent F2F meeting.

Cross-origin use cases:


1.  Asymmetric key use case: A healthcare association (origin 1) issued Dr. Smith an X.509 certificate and the corresponding private key. Dr. Smith accesses an e-prescription service (origin 2) and uses her private key to sign e-prescriptions.

2.  Secret key use case: Danny signed up at a cloud storage (origin 1) that created him a secret access key and persisted it through Danny's UA. Danny stores his 3D model data in the cloud storage. He then uses an online 3D printing service (origin 2) to print his model. To access Danny's model in Origin 1, Origin 2 needs to use Danny's secret key. Danny tells Origin 2 certain attribute(s) of his key. The Origin 2 finds the key object through the UA and uses the key to sign API requests for getting the model from cloud storage.

Although these two use cases are out of the current WG scope. It'll be good to collect them for future work.

Regards,
Karen
Received on Monday, 6 May 2013 16:39:03 UTC

This archive was generated by hypermail 2.3.1 : Tuesday, 6 January 2015 21:17:17 UTC