aboutcode-org / aboutcode-org/federatedcode

Handling Private/Public Key Generation, Storage, and Verification on the Server

Open
#81 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Python
Stars
6
Forks
2
PR merge metrics
No merged PRs in 30d

Description

Our system has three actor types: User, Service, and Package. Storing a separate public/private key pair for every Package is impractical. For Users, though, each account should have its own key pair (private key stored securely on the host, public key published in the actor document). I’m not certain of the exact storage design yet, but we should implement per-user key pairs. Remote users can be verified using their published public keys.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.