VNF package security | by Brendan (Ericsson) Security option #2, SDC should validate the certificate - Non-secured CSARs should still be supported
- vendor-root.cert used to validate against the latest-vendor-package.cert
- vendor-root.cert must be copied by operator to SDC containerNon-secured CSARs should still
- be supportedThe path in the container file system to store trusted issuer certificates should be configurable
- Here is a basic example zip file. The .sm signature file here is very basic, just a raw signature. The .sm file contents do not state which digest or signature algorithm was used to create the signature.Have the path to certifications configurable
| Gliffy |
---|
| |
---|
size | 300 |
---|
name | certificates |
---|
pagePin | 1 |
---|
|
|