Overview of Supported and Planned Features¶
- Create and publish Entity Configuration
- Trust Chains
- Collect and build Trust Chain
- Verify Trust Chains
- Evaluating Constraints
- Resolve Metadata
- Applying Metadata Policies
- Applying Metadata from Superiors
- Support for Custom Metadata Policy Operators
- Resolve Endpoint
- Configure Trust
- Configure Trust Anchors
- Set Authority Hints
- Endpoints
- Subordinate Listing Endpoint
- Fetching Endpoint
- Resolve Endpoint
- Trust Mark Endpoint
- Trust Marked Entities Listing Endpoint
- Trust Mark Status Endpoint
- Federation Historical Keys Endpoint
- Endpoint to automatically enroll entities
- Endpoint to request enrollment
- Endpoint to request to be entitled for a trust mark
- Entity Collection Endpoint
- Trust Marks
- Issuance of Trust Marks
- Support for Trust Mark Delegation
- Trust Mark JWT Verification for non-delegated Trust Marks
- Trust Mark JWT Verification for Trust Marks using delegation
- Trust Mark Verification using the Trust Mark Status Endpoint
- JWT Type Verification
- Endpoints supporting GET requests
- Endpoints supporting POST requests
- Endpoints supporting Client Authentication
- Automatic Key Rollover
- Entity Checks
- Automatic, configurable Checks for Enrollment
- Automatic, configurable Checks for Trust Mark Issuance
- Automatically refresh trust marks in Entity Configuration
- Support for multiple signing keys