Trust administration
Peer key servers this key server trusts, its own trust identity, and the principal trusts that map principals to peers (ADR 0172).
| Operation | Auth | Purpose |
|---|---|---|
GET /api/trusted-servers | Bearer + DPoP | List the peer key servers this key server trusts, or find them by name. |
POST /api/trusted-servers | Bearer + DPoP | Register a peer key server from its trust record. |
PUT /api/trusted-servers/{systemId} | Bearer + DPoP | Change a peer's friendly name or description. |
DELETE /api/trusted-servers/{systemId} | Bearer + DPoP | Remove a peer key server. |
GET /api/trust/local-info | Bearer + DPoP | This key server's own trust record, for a peer to register. |
GET /api/trust/local-certificate | Bearer + DPoP | This key server's external trust certificate, if one is installed. |
POST /api/trust/local-certificate/accept | Bearer + DPoP | Install this key server's external trust certificate. |
GET /api/principal-trusts | Bearer + DPoP | List principal trusts, optionally by principal, by peer, or by both. |
POST /api/principal-trusts | Bearer + DPoP | Map a principal to a peer key server. |
PUT /api/principal-trusts/{id} | Bearer + DPoP | Change a principal trust's flag. |
DELETE /api/principal-trusts/{id} | Bearer + DPoP | Remove a principal trust. |