Verifies a request's proof of possession of a key, synchronously.
The replay cache is consulted in this process; the keys it remembered are returned for spendProof().
spendProof()
the request
what readBody() read
readBody()
the key's descriptor
accessToken the request is bound to, rotation (the new key's descriptor, both keys proved) and mtlsTrust (pki or pinned)
accessToken
rotation
mtlsTrust
pki
pinned
the outcome with its method, or a refusal
method
Verifies a request's proof of possession of a key, synchronously.
The replay cache is consulted in this process; the keys it remembered are returned for
spendProof().