Re: JSONWebSignature2020 vs JcsEd25519Signature2022

On 2023-01-27 22:00, Markus Sabadello wrote:
> JsonWebSignature2020 should use URDNA2015.
> 
> The problem with using only JCS in a Data Integrity Proof is that it then only covers the document itself, not the underlying RDF dataset.
> Changes in the @context would not result in a signature becoming invalid.

Indeed.  A straightforward way dealing with this problem would be to include a hash of the RDF dataset leaving validation of this part as an option.

Cheers,
Anders
https://github.com/cyberphone/cbor-everywhere

Received on Saturday, 28 January 2023 07:50:25 UTC