ProofToChain

typealias ProofToChain = suspend AttestationResult.Verified.(AttestationProof) -> CertificateChain(source)

Receives the signed CSR or unsigned TBS CSR from the mobile client after it was thoroughly checked and verified. At this point, the selected authentication mode has been verified, the challenge checked, requested attributes validated, and the public key matched to the attestation statement. Hence, a certificate can be issued and the whole certificate chain (from newly issued certificate up to the CA) shall be returned.