Comment by johnmaguire

Comment by johnmaguire 6 days ago

0 replies

Yeah, I would argue it's less about removing trust from the client (which will ultimately get an auth token in addition to secrets and plaintext messages) and more about allowing for centralized authentication and authorization policies.