Skip to content
Discussion options

You must be logged in to vote

@madeinplutofabio really appreciate the framing. Directional alignment is worth more than volume, so this is exactly the right question to ask.

1. TRACE key revocation: design, not just review

You've already found the hardest open problem in the spec. TEE-sealed signing keys break the standard revocation mental model: you can't revoke a key that was sealed to a specific enclave measurement without invalidating every TRACE record that key signed, including legitimate past records. We need a design that distinguishes "revoke future issuance" from "invalidate historical records" and anchors that distinction in the SCITT ledger without requiring a trusted revocation oracle. If this intersects…

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@madeinplutofabio
Comment options

@imran-siddique
Comment options

Answer selected by imran-siddique
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants