Re: [Rats] draft-richardson-rats-usecases-00 comments

Michael Richardson <mcr+ietf@sandelman.ca> Fri, 05 July 2019 18:41 UTC

Return-Path: <mcr+ietf@sandelman.ca>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8C1AB120105 for <rats@ietfa.amsl.com>; Fri, 5 Jul 2019 11:41:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id drVLg57VWp6y for <rats@ietfa.amsl.com>; Fri, 5 Jul 2019 11:41:25 -0700 (PDT)
Received: from tuna.sandelman.ca (tuna.sandelman.ca [209.87.249.19]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A71ED12008B for <rats@ietf.org>; Fri, 5 Jul 2019 11:41:25 -0700 (PDT)
Received: from sandelman.ca (obiwan.sandelman.ca [209.87.249.21]) by tuna.sandelman.ca (Postfix) with ESMTP id F025D38196; Fri, 5 Jul 2019 14:39:27 -0400 (EDT)
Received: from localhost (localhost [IPv6:::1]) by sandelman.ca (Postfix) with ESMTP id 83A67B26; Fri, 5 Jul 2019 14:41:24 -0400 (EDT)
From: Michael Richardson <mcr+ietf@sandelman.ca>
To: Shawn Willden <swillden@google.com>, "rats@ietf.org" <rats@ietf.org>
In-Reply-To: <CAFyqnhVpzsLbeTto3oREYSa8UXTGzrt9DuhD=mn6W6XRE65rkw@mail.gmail.com>
References: <MW2PR00MB03963ABEB87211AD28A16240A6490@MW2PR00MB0396.namprd00.prod.outlook.com> <12503.1552447661@localhost> <219648D6-188A-429D-A13F-ED6155DE9016@island-resort.com> <14288.1553710783@dooku.sandelman.ca> <4EB6FF13-2DAF-4BDC-AC90-C46720D61AF0@arm.com> <21349.1560911427@dooku.sandelman.ca> <CAFyqnhVpzsLbeTto3oREYSa8UXTGzrt9DuhD=mn6W6XRE65rkw@mail.gmail.com>
X-Mailer: MH-E 8.6; nmh 1.7+dev; GNU Emacs 24.5.1
X-Face: $\n1pF)h^`}$H>Hk{L"x@)JS7<%Az}5RyS@k9X%29-lHB$Ti.V>2bi.~ehC0; <'$9xN5Ub# z!G,p`nR&p7Fz@^UXIn156S8.~^@MJ*mMsD7=QFeq%AL4m<nPbLgmtKK-5dC@#:k
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg="pgp-sha256"; protocol="application/pgp-signature"
Date: Fri, 05 Jul 2019 14:41:24 -0400
Message-ID: <872.1562352084@localhost>
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/8TGDWyVisd-_AMPGRF6Y2Qn13_8>
Subject: Re: [Rats] draft-richardson-rats-usecases-00 comments
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 05 Jul 2019 18:41:28 -0000

Shawn Willden <swillden@google.com> wrote:
    mcr> I think that <Android Keystore> is an implementation of the
    mcr> device-type attestation that FIDO cares about.

    > It can serve that purpose, yes.

Are there use cases that Android Keystore provides for that are beyond what
FIDO would ever want to do, but for which you need new claims, or new forms
of claims, or new ways to attest to freshness of claims.


--
Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
 -= IPv6 IoT consulting =-