iya-sts
    Preparing search index...

    Variable verifyEmbeddedScts

    verifyEmbeddedScts: (
        leafDer: any,
        issuerDer: any,
        logs: any,
    ) => Promise<{ ok: boolean; why: string }> = verifyEmbeddedScts

    Type Declaration

      • (leafDer: any, issuerDer: any, logs: any): Promise<{ ok: boolean; why: string }>
      • Verifies the embedded SCTs of a signing certificate against known CT logs.

        The answer is ok when at least one SCT is from a log in logs, made inside that log key's window, and verifies over the precertificate entry (cosign's VerifyEmbeddedSCT() with a threshold of one).

        Parameters

        • leafDer: any

          the signing certificate's DER

        • issuerDer: any

          its issuer's DER, whose SubjectPublicKeyInfo the precertificate entry names

        • logs: any

          the trusted logs, [{ logIdHex, spki, startMs, endMs }]

        Returns Promise<{ ok: boolean; why: string }>

        a promise of { ok, why }