[Lake] Re: Comments for remote attestation over EDHOC

Göran Selander <goran.selander@ericsson.com> Wed, 29 May 2024 08:54 UTC

Return-Path: <goran.selander@ericsson.com>
X-Original-To: lake@ietfa.amsl.com
Delivered-To: lake@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9E991C14F680 for <lake@ietfa.amsl.com>; Wed, 29 May 2024 01:54:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EETcYB-_-nKv for <lake@ietfa.amsl.com>; Wed, 29 May 2024 01:54:07 -0700 (PDT)
Received: from EUR02-DB5-obe.outbound.protection.outlook.com (mail-db5eur02on2051.outbound.protection.outlook.com [40.107.249.51]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E31A5C14F6F1 for <lake@ietf.org>; Wed, 29 May 2024 01:54:06 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Ms9ixCkNKTkASTB81QrhjotEo/ZZ65T8vJaQagyuMHjtuVRLHDNauaHdXsDx45ZjGCTyJ5O7gKwyN2GxB6f5653DQZMVtdCS3CaYNlUnI8wO0iLyYPQdCgO/nwlWvmU6cRtH1SD3EhXOldA0tEQNngH2VxecOauAyg0IrXxgwghDjbp4xIbZOXMCtM1jcfZRZFzNrWBSgWZlhwDvTH5/+VRGesLyitbVow08HBO4zDdfFKV03mqqWs0t3RRLuC28tpnzVdNYUgqqkDK6N8fzhTImbWAs6EIEpv+kxAcyh1bK27Zw7z0wk54PR7JlozLqRCVMmnQZrw1e5yoMjHQEXg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=0bSRNa/wJzwn1OwhU7ePHl3HhqJcFUZcQFK7DiK4Bqc=; b=O2mnF8T9m9TGXhE98Azi/CO6R5pGqQHbNoPQSb0JCnywV0XIDTG7lVnIHMqD5qtsfd281plP6pxHmF28AHYp1xFMxcYyejHeB9SkhiXQcoo5N7YEyUAHO+EpbIPWoOEt3UzU1S1IrWk7ZO4bfWTSs2u1euNBg1bou4xYMccOkFW2ry+U5WLNL2o2+FSNDRImt8+OZg4gy6A6G9o5ix1oTJBJ6ck7LvoJ37gguhECYvf/BDM+zYAuwsaXpuQW9n/Hy8f05xyrayEYa4FG0iAjGesEPQrzMKo6swl1yY9InY4pg5E6rEprP3GwOvxRU9C4CtGwRzPCzvUOf8hXqcBKHg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=0bSRNa/wJzwn1OwhU7ePHl3HhqJcFUZcQFK7DiK4Bqc=; b=jqtvJ8MX4SzEk/WNoNdj8ea5iuVnuZ2UtTUbUfRUdOhme1PZLBgtTWG3H1bSYEgdD9LURZ1Loz+GkmlyOM4wLIhuCIHqQ/kZWWaWrTtKZoUd7cwExpOD18po/jEAa/AOzS0opmTv8HRawV3ZtFcsAQuDNWlAGOk7Auq9ZN0zssG8un5Lc4DJI2mir4kTSpKAQSim0iDJFvOkOYZdXi/DXovc3BHFxpa74wbxz8Fr3ncx+gp6B03JyxGLltnMzZFY37nQRFp5BABFbnYeVgIpqrj2OppQjd53CHfOF6bNEkWVxjDGDu/V2vlO6B3qi6rJpafavMu9hOyFjmEY412URQ==
Received: from PAXPR07MB8844.eurprd07.prod.outlook.com (2603:10a6:102:24a::19) by GV1PR07MB9023.eurprd07.prod.outlook.com (2603:10a6:150:86::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7611.30; Wed, 29 May 2024 08:54:03 +0000
Received: from PAXPR07MB8844.eurprd07.prod.outlook.com ([fe80::1440:196c:b14:5803]) by PAXPR07MB8844.eurprd07.prod.outlook.com ([fe80::1440:196c:b14:5803%3]) with mapi id 15.20.7611.031; Wed, 29 May 2024 08:54:03 +0000
From: Göran Selander <goran.selander@ericsson.com>
To: Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de>, Michael Richardson <mcr+ietf@sandelman.ca>, "lake@ietf.org" <lake@ietf.org>
Thread-Topic: [Lake] Re: Comments for remote attestation over EDHOC
Thread-Index: AQHarkHOwQYHJrHQ7UW7pN9F58Wkc7Gns8gAgAN1NwCAATu39oABaI2AgAAbxGE=
Date: Wed, 29 May 2024 08:54:03 +0000
Message-ID: <PAXPR07MB88444E68AC42499816D58B9FF4F22@PAXPR07MB8844.eurprd07.prod.outlook.com>
References: <ae2173a6-cc15-44c9-aa14-f5e7ab625201@tu-dresden.de> <14134.1716600042@obiwan.sandelman.ca> <88819c94-9cbc-44c1-ab0f-9fe6e9ed1a8e@tu-dresden.de> <14114.1716820372@obiwan.sandelman.ca> <PAXPR07MB8844C8D57906ACCE0A8A5471F4F12@PAXPR07MB8844.eurprd07.prod.outlook.com> <50c305eb-f0b3-44a2-9ce5-628f12711ac9@tu-dresden.de>
In-Reply-To: <50c305eb-f0b3-44a2-9ce5-628f12711ac9@tu-dresden.de>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PAXPR07MB8844:EE_|GV1PR07MB9023:EE_
x-ms-office365-filtering-correlation-id: 66ca2729-299b-4cdc-7332-08dc7fbce401
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230031|1800799015|376005|366007|38070700009;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:PAXPR07MB8844.eurprd07.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230031)(1800799015)(376005)(366007)(38070700009);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_PAXPR07MB88444E68AC42499816D58B9FF4F22PAXPR07MB8844eurp_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PAXPR07MB8844.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 66ca2729-299b-4cdc-7332-08dc7fbce401
X-MS-Exchange-CrossTenant-originalarrivaltime: 29 May 2024 08:54:03.5411 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 0aLW0BBHI/GPB6ZGnZ0L+6Ajpe/UN3JIqiDxDQag8daWbVbl/qR1YofTIYz4nCpxPtz7Z0iBgsFEKNgdYh+AEMEQVWmknHWUAzhnxs1T/W8=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV1PR07MB9023
Message-ID-Hash: VUAJ4YMBO3UD2OH4MEHMXWBGB6ZKUYUT
X-Message-ID-Hash: VUAJ4YMBO3UD2OH4MEHMXWBGB6ZKUYUT
X-MailFrom: goran.selander@ericsson.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [Lake] Re: Comments for remote attestation over EDHOC
List-Id: Lightweight Authenticated Key Exchange <lake.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/lake/157KB4vuW5wGJbkMw4NCGTtTJik>
List-Archive: <https://mailarchive.ietf.org/arch/browse/lake>
List-Help: <mailto:lake-request@ietf.org?subject=help>
List-Owner: <mailto:lake-owner@ietf.org>
List-Post: <mailto:lake@ietf.org>
List-Subscribe: <mailto:lake-join@ietf.org>
List-Unsubscribe: <mailto:lake-leave@ietf.org>

Hi Usama,

Thanks. Some comments inline labelled [GS].

From: Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de>
Date: Wednesday, 29 May 2024 at 08:53
To: Göran Selander <goran.selander@ericsson.com>, Michael Richardson <mcr+ietf@sandelman.ca>, lake@ietf.org <lake@ietf.org>
Subject: Re: [Lake] Re: Comments for remote attestation over EDHOC

Hi Göran,

very helpful; thanks for sharing your thoughts. Coupla questions (see inline below); fully agree with the rest.

Regards,

Usama
On 28.05.24 12:03, Göran Selander wrote:
Hi,

Here are some thoughts on this topic.

I think it would be good to be explicit about any assumptions about EDHOC roles vs. RATS architecture to simplify for the reader.

The draft intends to specify how to perform remote attestation as part of EDHOC. While EDHOC is designed with constrained nodes and networks in mind, it is not a priori clear which endpoint is constrained, if any. With this in mind I think the draft should consider all three cases: R attests I, I attests R, and I and R attest each other. Perhaps these are part of one common protocol, or perhaps some case is different.

Even if the onboarding example is an illustrative use case when remote attestation could be useful,  the specification should not be restricted to this use case. Indeed, if the authentication procedure is repeated at a later stage, for whatever reason, e.g. key rotation, it should be possible to repeat the attestation procedure.

What limits the same protocol (EDHOC) from being used during the normal operation? I am asking this because Michael mentioned "having a protocol used at onboarding time and another one during normal operation..."

[GS] The authentication protocol may be identical first and subsequent times, but there may also be differences. For example, the authentication credential used to transport and allow verification of the public key may only be transported the first time,  and instead just refererenced subsequent times for reasons of message overhead. The authorization steps in lake-authz, including the EAD items carried in EAD_1 and EAD_2, may be carried out only at first EDHOC session setup (or every time if there is a reason to assume that the conditions are changed).

Even if the code run during onboarding would be less tested than that used during normal operation, it may still important to verify the state with respect to that code to be able to make some asseessment about the device, for example that old versions are not used.
I am curious about this. Can you explain this a little more? Particularly, what exactly are you referring to when you say "code run during onboarding"? Is it meant to refer to the attested EDHOC protocol run at the onboarding time? or the firmware? In any case, what kind of bugs may remain undetected (referring back to Michael's statement)? Do you have a concrete example?

[GS] As illustrated above there may be different branches of the code, e.g., the processing of certain EAD items, and the same executed each time EDHOC is run, perhaps because some processing performed during onboarding is of one-time nature, handling the situation that the endpoints have never previously been in contact before. I don’t have a concrete example myself, just trying to match Michael’s comment which seemed relevant.

Göran

While the relationship and potential synergies with lake-authz could be elaborated, perhaps in an appendix, lake-authz is independent of remote attestation, and should IMHO not be a pre-requisite for this draft.

I don’t know if this helps. Perhaps others have more input?

Göran