CommBank ID + income

Participants · participants/register

REG Mock CDR Register

The Register is the kit's own test harness (tamatping/cdr-register-testharness), which replaced an earlier hand-written Node Register. It lists Westpac, NAB and ANZ as data holder brands and CommBank as the accredited data recipient, signs software statement assertions (PS256, iss=cdr-register) and runs the CDR PKI that every participant's mTLS certificate comes from.

What it does

  • Model rendered at boot from cache-templates/: brands westpac, nab, anz; legal entity Commonwealth Bank of Australia, accreditation ADRBNK000001, software product cba-income-verify.
  • SSA signing key _GLOBAL_ is regenerated on every start - data holders fetch the JWKS live, so only already-issued SSAs go stale.
  • /public/download serves the CA, /public/sign turns a CSR into a client or server certificate.
  • Plain HTTP only - the harness has no mTLS listener, so the ADR reaches it directly.

Ports and endpoints

Register (HTTP)8084

Railway

registerregister-production-a177.up.railway.app success

Components and versions

Read from participants/register/docker-compose.yml at build time.

ServiceImageHost ports
registertamatping/cdr-register-testharness:20231123_18084→8084

Config browser

Read-only, from files tracked in git. Keys, keystores, .sec/, real env files and anything gitignored are left out; secret-looking values are shown as «redacted». 7 files.