Skip to main content

Trust administration

Peer key servers this key server trusts, its own trust identity, and the principal trusts that map principals to peers (ADR 0172).

OperationAuthPurpose
GET /api/trusted-serversBearer + DPoPList the peer key servers this key server trusts, or find them by name.
POST /api/trusted-serversBearer + DPoPRegister a peer key server from its trust record.
PUT /api/trusted-servers/{systemId}Bearer + DPoPChange a peer's friendly name or description.
DELETE /api/trusted-servers/{systemId}Bearer + DPoPRemove a peer key server.
GET /api/trust/local-infoBearer + DPoPThis key server's own trust record, for a peer to register.
GET /api/trust/local-certificateBearer + DPoPThis key server's external trust certificate, if one is installed.
POST /api/trust/local-certificate/acceptBearer + DPoPInstall this key server's external trust certificate.
GET /api/principal-trustsBearer + DPoPList principal trusts, optionally by principal, by peer, or by both.
POST /api/principal-trustsBearer + DPoPMap a principal to a peer key server.
PUT /api/principal-trusts/{id}Bearer + DPoPChange a principal trust's flag.
DELETE /api/principal-trusts/{id}Bearer + DPoPRemove a principal trust.