Skip to main content

JWTClaimConstraints profile of ACME Authority Token
draft-wendt-acme-authority-token-jwtclaimcon-03

Document Type Replaced Internet-Draft (acme WG)
Expired & archived
Authors Chris Wendt , David Hancock
Last updated 2025-09-26 (Latest revision 2025-07-07)
Replaced by draft-ietf-acme-authority-token-jwtclaimcon
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Formats
Additional resources Mailing list discussion
Stream WG state Candidate for WG Adoption
Document shepherd (None)
IESG IESG state Replaced by draft-ietf-acme-authority-token-jwtclaimcon
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document defines an authority token profile for handling the validation of JWTClaimConstraints and EnhancedJWTClaimConstraints. This profile follows the model established in Authority Token for the validation of TNAuthList but is specifically tailored for the JWTClaimConstraints certificate extensions. The profile enables validation and challenge processes necessary to support certificates containing both TNAuthList and JWTClaimConstraints, particularly in the context of Secure Telephone Identity (STI).

Authors

Chris Wendt
David Hancock

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)