@@ -1266,55 +1266,55 @@ non-volatile storage as FILENAME.EXT.
1266
1266
* ** 4.5.2** . Otherwise, recursively search the list of delegations in order
1267
1267
of appearance.
1268
1268
1269
- * ** 4.5.2.1** . Let DELEGATE denote the current target role TARGETS is
1269
+ * ** 4.5.2.1** . Let DELEGATEE denote the current target role TARGETS is
1270
1270
delegating to.
1271
1271
1272
1272
* ** 4.5.2.2** . ** Fast-forward attack recovery.** If a threshold of
1273
1273
delegated targets keys for the current delegation are removed from the
1274
- TARGETS metadata, delete the trusted DELEGATE metadata, if any, and the
1274
+ TARGETS metadata, delete the trusted DELEGATEE metadata, if any, and the
1275
1275
previously trusted snapshot metadata.
1276
1276
1277
1277
* ** 4.5.2.3** . ** Check for a rollback attack via snapshot.** The version number of the
1278
- DELEGATE metadata in the previous trusted snapshot metadata, if any, MUST
1278
+ DELEGATEE metadata in the previous trusted snapshot metadata, if any, MUST
1279
1279
be less than or equal to its version number in the new trusted snapshot
1280
1280
metadata. If this is not the case, abort the update cycle, and report the
1281
1281
potential rollback attack.
1282
1282
1283
- * ** 4.5.2.4** . ** Download the DELEGATE targets metadata file** , up to either
1283
+ * ** 4.5.2.4** . ** Download the DELEGATEE targets metadata file** , up to either
1284
1284
the number of bytes specified in the snapshot metadata file, or some Z
1285
1285
number of bytes. The value for Z is set by the authors of the application
1286
- using TUF. For example, Z may be tens of kilobytes. IF DELEGATE cannot be
1286
+ using TUF. For example, Z may be tens of kilobytes. IF DELEGATEE cannot be
1287
1287
found, end the search and report the target cannot be found. If
1288
1288
consistent snapshots are not used (see Section 7), then the filename used
1289
1289
to download the targets metadata file is of the fixed form FILENAME.EXT
1290
1290
(e.g., delegated_role.json). Otherwise, the filename is of the form
1291
1291
VERSION_NUMBER.FILENAME.EXT (e.g., 42.delegated_role.json), where
1292
- VERSION_NUMBER is the version number of the DELEGATE metadata file listed
1292
+ VERSION_NUMBER is the version number of the DELEGATEE metadata file listed
1293
1293
in the snapshot metadata file. In either case, the client MUST write the
1294
1294
file to non-volatile storage as FILENAME.EXT.
1295
1295
1296
1296
* ** 4.5.2.5** . ** Check against snapshot metadata.** The hashes (if any), and
1297
- version number of the new DELEGATE metadata file MUST match the trusted
1297
+ version number of the new DELEGATEE metadata file MUST match the trusted
1298
1298
snapshot metadata, if any. This is done, in part, to prevent a mix-and-match
1299
- attack by man-in-the-middle attackers. If the new DELEGATE metadata file
1299
+ attack by man-in-the-middle attackers. If the new DELEGATEE metadata file
1300
1300
does not match, abort the update cycle, and report the failure.
1301
1301
1302
- * ** 4.5.2.6** . ** Check for an arbitrary software attack.** The new DELEGATE
1302
+ * ** 4.5.2.6** . ** Check for an arbitrary software attack.** The new DELEGATEE
1303
1303
metadata file MUST have been signed by a threshold of keys specified in the
1304
- TARGETS metadata file. If the new DELEGATE metadata file is not signed
1304
+ TARGETS metadata file. If the new DELEGATEE metadata file is not signed
1305
1305
as required, abort the update cycle, and report the failure.
1306
1306
1307
- * ** 4.5.2.7** . ** Check for a rollback attack on the DELEGATE metadata.**
1308
- The version number of the trusted DELEGATE metadata file, if any, MUST be
1309
- less than or equal to the version number of the new DELEGATE metadata
1310
- file. If the new DELEGATE metadata file is older than the trusted
1311
- DELEGATE metadata file abort the update cycle, and report the potential
1307
+ * ** 4.5.2.7** . ** Check for a rollback attack on the DELEGATEE metadata.**
1308
+ The version number of the trusted DELEGATEE metadata file, if any, MUST be
1309
+ less than or equal to the version number of the new DELEGATEE metadata
1310
+ file. If the new DELEGATEE metadata file is older than the trusted
1311
+ DELEGATEE metadata file abort the update cycle, and report the potential
1312
1312
rollback attack.
1313
1313
1314
1314
* ** 4.5.2.8** . ** Check for a freeze attack.** The latest known time
1315
- should be lower than the expiration timestamp in the new DELEGATE
1316
- metadata file. If so, the new DELEGATE file becomes the trusted DELEGATE
1317
- file. If the new DELEGATE metadata file is expired, abort the update
1315
+ should be lower than the expiration timestamp in the new DELEGATEE
1316
+ metadata file. If so, the new DELEGATEE file becomes the trusted DELEGATEE
1317
+ file. If the new DELEGATEE metadata file is expired, abort the update
1318
1318
cycle, and report the potential freeze attack.
1319
1319
1320
1320
* ** 4.5.2.9** . If the current delegation is a multi-role delegation,
@@ -1328,7 +1328,7 @@ non-volatile storage as FILENAME.EXT.
1328
1328
1329
1329
* ** 4.5.2.11** . Otherwise, if the current delegation is a non-terminating
1330
1330
delegation, continue processing the next delegation, if any, by repeating
1331
- step 4.5 with DELEGATE as the current TARGET role. Stop the search, and
1331
+ step 4.5 with DELEGATEE as the current TARGET role. Stop the search, and
1332
1332
jump to step 5 as soon as a delegation returns a result.
1333
1333
1334
1334
** 5** . ** Verify the desired target against its targets metadata** .
0 commit comments