Verifies the MRTD challenge JWT signature and validates claims.
Ensures the challenge was issued by the trusted PID Provider and is intended for this Wallet Instance. Validates expiration, audience, and required parameters.
Challenge JWT, expected client_id, and verification callback
Verified header and payload
If aud doesn't match clientId
If signature verification fails
It is alligned to the IT-Wallet v1.3 specs
IT-Wallet L2+ specification Section 12.1.3.5.3.1 (MRTD Proof JWT)
Verifies the MRTD challenge JWT signature and validates claims.
Ensures the challenge was issued by the trusted PID Provider and is intended for this Wallet Instance. Validates expiration, audience, and required parameters.