You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
This repository was archived by the owner on Aug 15, 2025. It is now read-only.
-[6. Cryptography and ID-Certs](#6-cryptography-and-id-certs)
57
57
-[6.1 Home server signed certificates for public client identity keys (ID-Cert)](#61-home-server-signed-certificates-for-public-client-identity-keys-id-cert)
@@ -1013,7 +1013,7 @@ have different signatures, preventing malicious servers from successfully replay
1013
1013
Accessing a key-trial protected route is done by supplying the key trial solution(s) in the `X-P2-core-keytrial`
1014
1014
HTTP header. The value of this header is a JSON-Array, containing the key-trial solution object or objects.
1015
1015
1016
-
### 4.4 Protection against misuse by malicious home servers
1016
+
### 4.3 Protection against misuse by malicious home servers
1017
1017
1018
1018
To protect users from misuse by malicious home servers, a mechanism is needed to prevent home
1019
1019
servers from generating federation tokens for users without their consent and knowledge.
0 commit comments