nmos-cpp
nmos-cpp copied to clipboard
Add bcp-003-03 Certificate Provisioning support
- When the NMOS Client (EST Client) is connected to the target environment’s network, it will first discover the location of the EST Server using unicast DNS-SD.
- The NMOS Client will then request the Root CA for the current network, from the EST Server.
- The NMOS Client can assume the EST Server found using DNS-SD is trusted and need not perform TLS authentication of the EST Server for this initial transaction.
- The NMOS Client uses the Root CA returned to secure further communications with the EST Server and the NMOS Servers.
See https://specs.amwa.tv/bcp-003-03/branches/v1.0.x/docs/Certificate_Provisioning.html#nmos-client-automated-root-ca-certificate-provisioning-flow-informative