[Rats] Paul Wouters' No Objection on draft-ietf-rats-architecture-21: (with COMMENT)

Paul Wouters via Datatracker <noreply@ietf.org> Wed, 07 September 2022 22:00 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: rats@ietf.org
Delivered-To: rats@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id CDD01C1522BE; Wed, 7 Sep 2022 15:00:30 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Paul Wouters via Datatracker <noreply@ietf.org>
To: The IESG <iesg@ietf.org>
Cc: draft-ietf-rats-architecture@ietf.org, rats-chairs@ietf.org, rats@ietf.org, Kathleen.Moriarty.ietf@gmail.com, Kathleen.Moriarty.ietf@gmail.com
X-Test-IDTracker: no
X-IETF-IDTracker: 8.15.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: Paul Wouters <paul.wouters@aiven.io>
Message-ID: <166258803083.57470.128494099506736352@ietfa.amsl.com>
Date: Wed, 07 Sep 2022 15:00:30 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/8zFV_R7aFkCQxuzw0ljjh9tfamQ>
Subject: [Rats] Paul Wouters' No Objection on draft-ietf-rats-architecture-21: (with COMMENT)
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 Sep 2022 22:00:30 -0000

Paul Wouters has entered the following ballot position for
draft-ietf-rats-architecture-21: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ 
for more information about how to handle DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-rats-architecture/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

Thanks for the document. A few comments only.

#1 Figure 3

I cannot make sense of Figure 3. I understand the text in Section 3.2, so it
might not matter. But for instance the figure does not show to me at all that
the bootloader attested the kernel.

#2 Dark sides

Obviously, this architecture can be misused for bad things. It might be nice to
have a section on this as per RFC 8280, but I am also not sure what to say
other than "don't use this to restrict people based on discriminatory features".

#3  IPR

I am a little concerned about the IPR claims filed. Intel reserves the right to
charge, and Huawei only allows free use for Section 4.3 and 6 despite that
there is no Section 4.3 and it makes little sense for Section 6 ? I also
believe that this document merely lists very generic concepts based on known
prior art (but I am not a lawyer)