From 1583a12ceca37104146a4346ad67049be71c32a2 Mon Sep 17 00:00:00 2001 From: famfo Date: Wed, 6 Aug 2025 21:59:31 +0200 Subject: [PATCH 1/2] s2s/keys: clarify minimum_valid_until_ts query Signed-off-by: famfo --- data/api/server-server/keys_query.yaml | 9 ++++----- 1 file changed, 4 insertions(+), 5 deletions(-) diff --git a/data/api/server-server/keys_query.yaml b/data/api/server-server/keys_query.yaml index 791deb0a5..3e100aca0 100644 --- a/data/api/server-server/keys_query.yaml +++ b/data/api/server-server/keys_query.yaml @@ -34,8 +34,8 @@ paths: - in: query name: minimum_valid_until_ts description: |- - A millisecond POSIX timestamp in milliseconds indicating when the returned - certificates will need to be valid until to be useful to the requesting server. + A millisecond POSIX timestamp. The returned keys MUST be valid + until at least this timestamp. If not supplied, the current time as determined by the notary server is used. required: false @@ -98,9 +98,8 @@ paths: type: integer format: int64 description: |- - A millisecond POSIX timestamp in milliseconds indicating when - the returned certificates will need to be valid until to be - useful to the requesting server. + A millisecond POSIX timestamp. The returned keys + MUST be valid until at least this timestamp. If not supplied, the current time as determined by the notary server is used. From 70f6749c92cf42e95d5669cabb044949c1cab7e0 Mon Sep 17 00:00:00 2001 From: famfo Date: Wed, 6 Aug 2025 22:10:18 +0200 Subject: [PATCH 2/2] changelogs/s2s: add minimum_valid_until_ts clarification --- changelogs/server_server/newsfragments/2191.clarification | 1 + 1 file changed, 1 insertion(+) create mode 100644 changelogs/server_server/newsfragments/2191.clarification diff --git a/changelogs/server_server/newsfragments/2191.clarification b/changelogs/server_server/newsfragments/2191.clarification new file mode 100644 index 000000000..8b3652edc --- /dev/null +++ b/changelogs/server_server/newsfragments/2191.clarification @@ -0,0 +1 @@ +Clarify what the minimum_valid_until_ts field means when it is set in key queries.