Skip to main content

SID-TRANS-02 — OpenID4VCI Credential Issuance Protocol

PropertyValue
Ownerplatform
Categorytechnical
CSF Functionprotect
GroupTransport Security Controls

Description

Full OID4VCI flow: credential offer parsing → metadata fetch → issuer trust evaluation via AuthZEN → OAuth token exchange → credential request with proof. Proof types: JWT, DI-VP, attestation. Algorithm 'none' rejected. Private keys in headers rejected.

Components

Source References

Framework Requirements

EUDI Security Requirements: WUM-8.2.2-Fun-01, CS-I.3-WUS

FitCEM Wallet Instance: FIT-AU-11, FIT-AU-17

ISO 27001 Annex A: A.5.14

STRIDE Threat Model: VC-T-1, CC-S-1