Re: [Rats] concise-ta-stores

Ira McDonald <blueroofmusic@gmail.com> Mon, 27 June 2022 13:01 UTC

Return-Path: <blueroofmusic@gmail.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 86814C14792E for <rats@ietfa.amsl.com>; Mon, 27 Jun 2022 06:01:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level:
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id k1Wi8DDinJyN for <rats@ietfa.amsl.com>; Mon, 27 Jun 2022 06:01:04 -0700 (PDT)
Received: from mail-vs1-xe2f.google.com (mail-vs1-xe2f.google.com [IPv6:2607:f8b0:4864:20::e2f]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id ED265C14CF13 for <rats@ietf.org>; Mon, 27 Jun 2022 06:01:04 -0700 (PDT)
Received: by mail-vs1-xe2f.google.com with SMTP id o13so8880312vsn.4 for <rats@ietf.org>; Mon, 27 Jun 2022 06:01:04 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=aMCPHkJXLE1/KrIjL6hzAC+tgU5ayob96J0vMvQAhks=; b=nFZKW6XQpedao3qL92IePBCdDGeC6QC29oBggtV8TelWJINDp7sNOCRCqyuKSu2Al+ WaYFWo5HYFlZLvYlQX5CBBGla0vs+ov0kYFUi4smdZp/azx5ge+kE6lV5lli9A5WSwxz NQIsDdOLwAUx8TQe0jvwUxeXWh2/5NY9m869M7WSf70ytG2RHimamk/7cy52xLvL4Glu BHOGuoBumDdN42HncIYY2YxWowjxUqB4wpb95Ui/97G/3lsDqs7uodtjCh5x94zcqCIw +rjLv+afDjjdl1e7lbZkpcY+3wsLHJJG2oGK59aZjmgT9GEejnWkU7OjbwsljyPrS3yF sXqg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=aMCPHkJXLE1/KrIjL6hzAC+tgU5ayob96J0vMvQAhks=; b=LX8H2mFHPtSv5x1hhuZ2/04ChGbeXKxdtiWWS3iLHpac9ZrA9Nrt2ra0ZIUNzF/7XD O3C3igAy/r6mIdqwaL/VPAXkeMojIJG82HpwfBkZtl2wwIcigxGQzhs0sSMRJOgbZNE6 +0FEOiHEZOkug536JV2/WKTgeIEo9Ay+MOm8kwVQKzcjNqUBkl+us6EsqHqmdb7iuXIJ aOVj6ROSRDopIgv8Xcnjdu8FtOudAMeb47o6faoMoA8k7xrplW2izYm8J2j5KlsYaMsI TKqIGkGjYEchIWz5JEDOFgfRIo/rMCLeiPC3kpGYPpDhbVdhWLLeoa2827Ycil8h0Mat taJQ==
X-Gm-Message-State: AJIora8Th6Y/7gGDdJyDSUuT0K6RGsc5q2TZHMGKBMk4nKWRJVP6cImT q0YJmjIiCWyFGllAN2qBzibaUUccFEhWdl2i1W8=
X-Google-Smtp-Source: AGRyM1vAFpUdFLCGlu6Esf1tfnQx6jHaU2xawBZtt6iOpZ2x9FxOesnrl+qVxiSU9iUAefTFnrNg9rT3ULNqaWl7HpE=
X-Received: by 2002:a67:f442:0:b0:354:6522:83a2 with SMTP id r2-20020a67f442000000b00354652283a2mr4129453vsn.60.1656334863724; Mon, 27 Jun 2022 06:01:03 -0700 (PDT)
MIME-Version: 1.0
References: <C3323069-1BDF-4229-B912-02BF0AF1DD29@redhoundsoftware.com> <DB9PR08MB65246370C56E3629399676DD9CB99@DB9PR08MB6524.eurprd08.prod.outlook.com>
In-Reply-To: <DB9PR08MB65246370C56E3629399676DD9CB99@DB9PR08MB6524.eurprd08.prod.outlook.com>
From: Ira McDonald <blueroofmusic@gmail.com>
Date: Mon, 27 Jun 2022 09:00:52 -0400
Message-ID: <CAN40gSvErTN94C+8C7rrpQZ4vLWDbMp26ktBpo3TyPJes1cBwA@mail.gmail.com>
To: Thomas Fossati <Thomas.Fossati@arm.com>, Ira McDonald <blueroofmusic@gmail.com>
Cc: Carl Wallace <carl@redhoundsoftware.com>, "rats@ietf.org" <rats@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000002e72a505e26d8388"
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/C8c9cuXN1F79gfRHxtpRtsHM6Qo>
Subject: Re: [Rats] concise-ta-stores
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 27 Jun 2022 13:01:05 -0000

Hi Carl,

+1

Cheers,
- Ira


On Mon, Jun 27, 2022 at 7:24 AM Thomas Fossati <Thomas.Fossati@arm.com>
wrote:

> Hi Carl,
>
>
>
> > Carl Wallace <carl@redhoundsoftware.com> wrote:
>
> >
>
> > Below is a link to a draft that was submitted yesterday for
>
> > consideration for adoption by the working group. It Is an extension of
>
> > the Concise Reference Integrity Manifest spec
>
> > (draft-birkholz-rats-corim-02). It aims to enable decoupling of TAs
>
> > (and CAs) from reference data and to add support for constraining the
>
> > use of trust anchors, chiefly by limiting the environments to which a
>
> > set of trust anchors is applicable.
>
> >
>
> >
> https://datatracker.ietf.org/doc/html/draft-wallace-rats-concise-ta-stores-00
>
>
>
> Looks like a very useful addition -- in fact, it's an enabler for
>
> virtually all RATS use cases -- and I think it makes sense to frame it
>
> as a CoRIM extension.
>
>
>
> > A fork of the source repo for the CoRIM draft with support for this
>
> > spec added is available at https://github.com/carl-wallace/corim.
>
> > Note, the source does not yet reflect a change made this week to add a
>
> > unique tag to the concise-ta-store-map type and will be updated to
>
> > reflect this change next week.
>
>
>
> Awesome job.  Looking forwards to see it merged into mainline
>
> veraison/corim.
>
>
>
> Cheers, t
>
>
>
>
> IMPORTANT NOTICE: The contents of this email and any attachments are
> confidential and may also be privileged. If you are not the intended
> recipient, please notify the sender immediately and do not disclose the
> contents to any other person, use it for any purpose, or store or copy the
> information in any medium. Thank you.
> _______________________________________________
> RATS mailing list
> RATS@ietf.org
> https://www.ietf.org/mailman/listinfo/rats
>