Skip to content

test(ctap2): verify signature round-trip#280

Open
AlfioEmanueleFresta wants to merge 1 commit into
masterfrom
test/ctap2-signature-roundtrip
Open

test(ctap2): verify signature round-trip#280
AlfioEmanueleFresta wants to merge 1 commit into
masterfrom
test/ctap2-signature-roundtrip

Conversation

@AlfioEmanueleFresta

Copy link
Copy Markdown
Member

The end-to-end tests drove full ceremonies but never verified a signature, so a regression in the emitted bytes could pass unnoticed. This adds a round-trip test against the virtual authenticator that verifies an assertion signature and a packed attestation signature, including an extension that writes into the signed data.

Part of #259.

…icator

Register with hmac-secret, then check the assertion signature against the
credential public key and the packed attestation signature against the
embedded certificate, recomputing the client data hash from clientDataJSON.
@AlfioEmanueleFresta AlfioEmanueleFresta marked this pull request as ready for review June 15, 2026 21:29
@AlfioEmanueleFresta AlfioEmanueleFresta marked this pull request as draft June 15, 2026 21:33
@AlfioEmanueleFresta AlfioEmanueleFresta marked this pull request as ready for review June 15, 2026 21:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant