Why does Amazon Web Services use asymmetric instead of symmetric keys to compute the signature for outbound notifications?
Signature computation for outbound notifications on the AWS end and signature validation on your end using symmetric keys becomes cumbersome and indeterministic by the introduction of AWS access key rotation (refer to https://aws-portal.amazon.com/gp/aws/developer/account/index.html?ie=UTF8&action=access-key for more details). Asymmetric key based signing will become an AWS wide standard for outbound notifications.
Related Questions
- How is the new signature algorithm different from the existing one for outbound notifications (CBUIAmazon Simple Pay return URLs and IPNs)?
- Can oncogenes and their associated mutations affect asymmetric versus symmetric divisions in stem cells?
- How will Sybase’s products be priced for Amazon Web Services environments?