Re: [Rats] Call for Adoption: EAT draft

Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com> Tue, 11 June 2019 15:25 UTC

Return-Path: <kathleen.moriarty.ietf@gmail.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A22261202AF for <rats@ietfa.amsl.com>; Tue, 11 Jun 2019 08:25:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id H_KYBMCNW-0o for <rats@ietfa.amsl.com>; Tue, 11 Jun 2019 08:24:59 -0700 (PDT)
Received: from mail-oi1-x233.google.com (mail-oi1-x233.google.com [IPv6:2607:f8b0:4864:20::233]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B86011202A7 for <rats@ietf.org>; Tue, 11 Jun 2019 08:24:59 -0700 (PDT)
Received: by mail-oi1-x233.google.com with SMTP id 203so9243693oid.13 for <rats@ietf.org>; Tue, 11 Jun 2019 08:24:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to; bh=+b4kW7qI+eDuphU/3UHfpbR2ARjk4FktCJ/EqeeCtmw=; b=gd/O4cEBsb7suYjOisJNL4ni5LzYxzVCBVsM/Pr0X2tihWQgTBLAwnM3/SWkHSce1g g4CEX1rUqzEMNWMOVt5oZlcxtOWjLoLQB0tRh+UfSEOLgBsvn6tmlCP4o2btPYZVdstU 7U7gB/S6sUgAiHg0cbb82kb6KjsXUnYskcETZEvxZM3uUkVjxHqyP0QVAT0Z87TfLN5Q SO6eKc4A6iQsh+BhPvfX29IjeJrfNBmOQOMpA22VqmA2fNqG4Dwe2Naoi1YaxwFPpgKf dbDNn2l31iCxsAZ/nyAWJSy1hHXVXSFT3IcvIzXm3YGLruqUtirZAKh5D3UQcCfYbi4a wwyw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to; bh=+b4kW7qI+eDuphU/3UHfpbR2ARjk4FktCJ/EqeeCtmw=; b=fxgv5HQMWVF39b8hTi6VRK45BqdzBdQNB9dHbF2AeWzO/qjtfVyOR1+2Cfm8NV02C8 5xEsBLQjuhQs5MDrxOZmHFrxp5r1FDI0Ij4Go/bfPC+BHh98dcp272SJ7TkRml9dKTJj OeKnhysv7OMf5EH2U5NVjOeGIFOsSI4wfYDpSrWLoQqEu/F/6HmOPk0tPCj067xs+hV+ rwh/GMlDGHQvYgLuLIARRoiDSprUI0MDPAym4UMw8e0RCnL6w7Vn73Q34Mvr2CiGBRsJ QrfqsJQtZKDsZZz+nEnbZX9+93PSPF29VLFri1dQ5eICsYhG5W+AqMo57PmAfdszKWKZ 84ow==
X-Gm-Message-State: APjAAAU/4Hqp7oVddCJZ4IPUoA5DsN8bNmTJ/OJYMM09Rp0tn4yiR8HV +JV+gpBkCwd0YnqfBQW787Cr0u9q6Qw0Auvg1fb+urQb5fU=
X-Google-Smtp-Source: APXvYqxPfC6iZt5t2/3QjmmlYi20ydT38hxsp7IdzOVTQU3jdV7WI3c6zmJ4V7cLO9mbn5dwugkHD+b8dbKocxeAQnk=
X-Received: by 2002:aca:3d54:: with SMTP id k81mr14967322oia.111.1560266698811; Tue, 11 Jun 2019 08:24:58 -0700 (PDT)
MIME-Version: 1.0
References: <CAHbuEH6Mdwp+neWbcecA-pMYZoXKiNda2A0EnMh-8WX=W9_edA@mail.gmail.com>
In-Reply-To: <CAHbuEH6Mdwp+neWbcecA-pMYZoXKiNda2A0EnMh-8WX=W9_edA@mail.gmail.com>
From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
Date: Tue, 11 Jun 2019 11:24:42 -0400
Message-ID: <CAHbuEH6sLc9r71DDm283iZKziudSMb218tM3SBTPDC+K0oGJzg@mail.gmail.com>
To: rats@ietf.org
Content-Type: multipart/alternative; boundary="000000000000566e0b058b0de615"
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/Bl-mf2A5t2DYmKcIB4drVmlXP3w>
Subject: Re: [Rats] Call for Adoption: EAT draft
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 11 Jun 2019 15:25:03 -0000

Greetings!

A month later, my assessment of the status of this last call is as follows:

The EAT draft is adopted with identified issues that need to be resolved
through the WG consensus process.  I am listing the identified issues in
this message.  If any issues have been left out, please do correct me and
we'll make sure the WG runs through the full list.  Additional decision
points can be added at any time for WG discussion, as with any WG adopted
draft.  If details within any of the identified issues require
clarification, we can figure that out in an issue tracking format and
ensure we have consensus on each identified item.


   1. Clearly define EAT (token, structured format, protocol message, etc.)
   2. CWT or CWT-like?  My take from the thread is that we move to CWT and
   we use the CWT or JWT registry as appropriate with updated instructions.
   Instructions should account for unused or barely used claims.
   3. Process for review of claims entered into CWT/JWT registry
   4. A basic set of attestation related claims and what makes a good claim
   for use within EAT. Define claims profile for network equipment. Determine
   which other profiles (if any) should be considered.
   5. Limits to what can be populated in an EAT claim

Related work in other drafts may influence this draft in time as well, such
as an information model.  Additional questions came up that I trust will be
addressed in the draft update, such as the ability to create a custom claim
to carry the entire TPM attestation as a payload and relationships to
FIDO/Webauthn.  Examples may be helpful.  Ensuring clean interoperation
with other drafts will be important as well.

If the authors could post a new version with the name formatted as a WG
draft, that can serve as a next step.  If they have felt there is agreement
on some of the items discussed, this new version can include their proposed
text to address those points for WG review.  If the draft is in github,
then a pull request may be used to suggest corrections, but proposed text
should also go to the list.

draft-ietf-rats-eat-00.txt

Thank you,
Kathleen

On Fri, May 10, 2019 at 11:06 AM Kathleen Moriarty <
kathleen.moriarty.ietf@gmail.com> wrote:

> Greetings!
>
> At IETF 104, a poll was taken to determine interest in the RATS WG
> adopting:
>
> The Entity Attestation Token (EAT)
> https://datatracker.ietf.org/doc/draft-mandyam-rats-eat/
>
> This begins a 2 week period to determine interest in adopting this draft
> as a working group item.  The poll will close on May 24th EOD PDT.
>
> Minutes from IETF 104:
> https://datatracker.ietf.org/doc/minutes-104-rats/
> --
>
> Best regards,
> Kathleen
>


-- 

Best regards,
Kathleen