Skip to content

Commit

Permalink
Rephrase sentence related to binding keys and identities
Browse files Browse the repository at this point in the history
  • Loading branch information
beurdouche committed Jan 19, 2024
1 parent a3d2d3b commit 7dada75
Showing 1 changed file with 2 additions and 3 deletions.
5 changes: 2 additions & 3 deletions draft-ietf-mls-architecture.md
Original file line number Diff line number Diff line change
Expand Up @@ -1906,9 +1906,8 @@ In certain cases, the adversary can access specific bindings between public keys
and identities. If the signature keys are reused across groups, the adversary
can get more information about the targeted user.

> **RECOMMENDATION:** Separate the binding the identities and the public
> keys from the service which generates or validates the credentials or
> cryptographic material of the Clients.
> **RECOMMENDATION:** Ensure that the linking between public keys and identities
> only happen in expected scenarios. Otherwise privilege a stronger separation.

## Considerations for attacks outside of the threat model

Expand Down

0 comments on commit 7dada75

Please sign in to comment.