Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[inbox] Verify key #1196

Open
pontus opened this issue Dec 16, 2024 · 0 comments
Open

[inbox] Verify key #1196

pontus opened this issue Dec 16, 2024 · 0 comments

Comments

@pontus
Copy link
Contributor

pontus commented Dec 16, 2024

As an administrator, I would like to be able to provide the encryption key that will be used to decrypt submissions so that uploads can be checked on receival and acceptance is not communicated if the files aren't possible to decrypt, thus giving data submitters quick feedback on using an incorrect key.

One possible way of achieving this without adding too much risk could be having a separate reencryption service that is given access to the ingestion private key that the inbox calls on to try to verify the key used before continuing with other steps.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant