Re: [Rats] Call for charter consensus

Carl Wallace <carl@redhoundsoftware.com> Fri, 18 January 2019 23:54 UTC

Return-Path: <carl@redhoundsoftware.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 940B2131504 for <rats@ietfa.amsl.com>; Fri, 18 Jan 2019 15:54:49 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, MIME_QP_LONG_LINE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=redhoundsoftware.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OG_23C0xFgiF for <rats@ietfa.amsl.com>; Fri, 18 Jan 2019 15:54:46 -0800 (PST)
Received: from mail-qk1-x736.google.com (mail-qk1-x736.google.com [IPv6:2607:f8b0:4864:20::736]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A0B281314EC for <rats@ietf.org>; Fri, 18 Jan 2019 15:54:46 -0800 (PST)
Received: by mail-qk1-x736.google.com with SMTP id c21so9044558qkl.6 for <rats@ietf.org>; Fri, 18 Jan 2019 15:54:46 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhoundsoftware.com; s=google; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=yqJb8cUDEZlX/I2VLjKiFnMmBeffLDPa5CLxr0pc3oM=; b=uLPfDiz+Fos3eFdFV3lgv/VCv/7GuQ0y9OXbFI+dfHXuyU9wEDY5ABWOP1Bd9R8Xwa bMSr0ss/RAOPjbTd/sTF2v8wKaHs/A0yghKGK2FTj9nUbD1mw0/KDXaNPbH5RlQUxqK/ O+K3AZQTf+HO+r2XFzYKmEL+yzarffw7JfCaA=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=yqJb8cUDEZlX/I2VLjKiFnMmBeffLDPa5CLxr0pc3oM=; b=jZiQ6fOtQ2YXq5MnL1HEXURlakNQ9+6CBmwOw2uMYu4xRlPsbBtBnt/iCUrPQ/g0mc /Jmg8Jt8MX94awgENcZl21ALCq1UrLpWfioxmQtetqoW844VKF2XZrYFxvkXtzT9WjkQ MVVW7SMCXnYbHWKrX5pJoM4y51lCwqfl8l96GSuQ1A69jSXWNgC7/3Ge50rrzRGt8QzD igQ8R4f1GFydWzVlptkLPTCBCLtMZWBsBByEMqUip4rWufIO0RoRVJGWpeobG3Ei9mSB VENaFmu51l4eTE0+JYnrb8tq2gswkmH67wGTpY3KI9RxJIW2ClAAG86oXR4+IOLYzIyD 2joQ==
X-Gm-Message-State: AJcUukeZVz8FLeJgVX5aQSpy++2wvewugjCn5FJ7MlBxaQpZcDav5hZe kC7DKEH6AJ8Q9cTYVsbWGYvQWmHcOTw=
X-Google-Smtp-Source: ALg8bN4ACMkeoFyG+Sgwskd5zfOnSFtVPNwzHt16ANu05mtBAzdmJgEAMK06Itjzu+W40XkcjlP/Fw==
X-Received: by 2002:a37:9286:: with SMTP id u128mr17484122qkd.0.1547855685418; Fri, 18 Jan 2019 15:54:45 -0800 (PST)
Received: from [192.168.1.200] (pool-173-66-82-22.washdc.fios.verizon.net. [173.66.82.22]) by smtp.gmail.com with ESMTPSA id y14sm72446371qky.83.2019.01.18.15.54.44 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Fri, 18 Jan 2019 15:54:44 -0800 (PST)
Content-Type: multipart/alternative; boundary="Apple-Mail-8153D8B9-4890-466E-BBB9-470BA33CBF73"
Mime-Version: 1.0 (1.0)
From: Carl Wallace <carl@redhoundsoftware.com>
X-Mailer: iPhone Mail (16C101)
In-Reply-To: <C79C7D38-3544-4CDB-94C5-2F49FF0D7BE2@cisco.com>
Date: Fri, 18 Jan 2019 18:54:44 -0500
Cc: "rats@ietf.org" <rats@ietf.org>
Content-Transfer-Encoding: 7bit
Message-Id: <AD9A3A3C-42FD-48A0-8B5B-A1F6644573DB@redhoundsoftware.com>
References: <D86754B8.D099E%carl@redhoundsoftware.com> <C79C7D38-3544-4CDB-94C5-2F49FF0D7BE2@cisco.com>
To: "Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com>
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/9Ze-uxnuQKqjgPgIKMnFrjoS1jM>
Subject: Re: [Rats] Call for charter consensus
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 18 Jan 2019 23:54:54 -0000

Inline...

> On Jan 18, 2019, at 6:27 PM, Nancy Cam-Winget (ncamwing) <ncamwing@cisco.com> wrote:
> 
> Hi Carl,
> <Chair hat-off>
> It is my experience in the IETF that we focus more in the definition of data models and transfer/transport mechanisms for information (e.g. yang, netconf, radius, nea) but how the information is applied is typically out of scope.

Many verifiable data models (e.g., X509, CMS, JOSE, COSE, etc.) include verification rules. 

>  
> <Chair hat-on>
> As to the consensus of the group and the charter during the call, there was no consensus to the last item (the assessment of claims).  Additionally,
> I don’t believe we have permanently omitted the “assessment” portion. 
> The understanding is that we need to charter to a scope that we can achieve and if and when in that process we need to recharter to include other work items we can certainly do so.
>  
OK. 

> Warm regards, Nancy
> 
> From: Carl Wallace <carl@redhoundsoftware.com>
> Date: Friday, January 18, 2019 at 07:12
> To: "Nancy (ncamwing)" <ncamwing@cisco.com>, "rats@ietf.org" <rats@ietf.org>
> Subject: Re: [Rats] Call for charter consensus
>  
>  
>  
> From: RATS <rats-bounces@ietf.org> on behalf of "Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com>
> Date: Thursday, January 17, 2019 at 10:38 PM
> To: "rats@ietf.org" <rats@ietf.org>
> Subject: [Rats] Call for charter consensus
>  
> Hello RATS participants:
>  
> At the virtual meeting on 1/16/2019, there was consensus [1] that we should pursue chartering a Working Group with the text reflected in [2].
>  
> We need to continue this discussion on the email list as well as gauge continued interest in participating in this work.  Please do so by responding to the following questions:
>  
> Do you support this charter text (full text also provided at the end of email or at [1])?  Or do you have objections or blocking concerns?
> [CW] I dislike that the goals do not include verifying or using attestations. Verification was cast as "mundane" during the meeting earlier this week, but historically interop pain often arises at the verification/usage point. This is independent of comparing values extracted from an attestation to a reference value, which is deemed out of scope. Perhaps: "This WG will standardize formats for describing assertions/claims about system components and associated evidence; procedures and protocols to convey these assertions/claims to the relying parties; and procedures to establish trust in attestations/claims. Assessment of assertions/claims, such as via reference values, is outside the scope for this WG."
>  
> Are you willing to author or participate in the development of the drafts of this WG?
> [CW] Possibly, though limited to defining some conveyance mechanisms most likely.
>  
> Are you willing to help review the drafts of this WG?
> [CW] Yes
>  
> Are you interested in implementing drafts of this WG?
> [CW] As a relying party, yes.
>  
> Please provide comments including proposed text changes ASAP to provide ample time for discussion.  This call for consensus ends on February 1, 2019. 
>  
> Thanks, Roman and Nancy
>  
> [1] Minutes sent: https://mailarchive.ietf.org/arch/msg/rats/xEwczqnoNgyBYlRTKg35Yo4ccWY
> [2] Updated charter sent: https://mailarchive.ietf.org/arch/msg/rats/MQLZIkIK23ZlSBMB5wJjo71bOr0
>  
> _______________________________________________ RATS mailing list RATS@ietf.org https://www.ietf.org/mailman/listinfo/rats