Re: [Rats] More use cases for draft-richardson-rats-usecases-00

Carl Wallace <carl@redhoundsoftware.com> Thu, 28 March 2019 12:41 UTC

Return-Path: <carl@redhoundsoftware.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F178B1202CF for <rats@ietfa.amsl.com>; Thu, 28 Mar 2019 05:41:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=redhoundsoftware.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cgEG7Qxp-cxi for <rats@ietfa.amsl.com>; Thu, 28 Mar 2019 05:41:41 -0700 (PDT)
Received: from mail-qt1-x836.google.com (mail-qt1-x836.google.com [IPv6:2607:f8b0:4864:20::836]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 292AD120260 for <rats@ietf.org>; Thu, 28 Mar 2019 05:41:41 -0700 (PDT)
Received: by mail-qt1-x836.google.com with SMTP id x12so22809695qts.7 for <rats@ietf.org>; Thu, 28 Mar 2019 05:41:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhoundsoftware.com; s=google; h=user-agent:date:subject:from:to:message-id:thread-topic:references :in-reply-to:mime-version:content-transfer-encoding; bh=MDIngkre+LNjMN/ys0PDh/SDul6dYsNoaNayYQc6SAI=; b=Qb4n6WPIw1QJ9dcmgZ/n9F1jg0goKca2+2Ogvy59tcx92FiIQDl7HWCnNLu2NOB6BL sEEf59yFnDyCOWvUQ/v1sHnbRoXYiCdtYYe0dvfvxXR4YzE99NGCBrhWJhkZydacjuZ0 Z5EjEZSIImCAyv7asjfo6GLcX9tXAVPU+6fsQ=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:user-agent:date:subject:from:to:message-id :thread-topic:references:in-reply-to:mime-version :content-transfer-encoding; bh=MDIngkre+LNjMN/ys0PDh/SDul6dYsNoaNayYQc6SAI=; b=HXOyT0ixEBVushrb+8sGqfVg6is9ufxUfmWSA+KGkSRYwtTau6NuXm1tQ0nsXqF51M SFW6P/fjgdj17IYBiy/2bvqS2iEkYp2z0gp/S0WCRqfkybkkCqpk6AGEbD9LIZE2fxDK hhkYHg27x8lVjegi9EDyFJUApSBHGuvEMACBhm7A4cyiVyyDtamP9R5SBKklfiDTdcty z9dSl1QP7+IzxEUbpH00q1L0FcWRMw7HLOLesrsUU7IrbdllI0N0EJoxd9t81oQgMLqL UOTlb3KYP3+eJ9f1oulvYpdQGaJPMmicwrw3ui3AYI8/Kz0zIkxF+j7blUCYiANxQZYW GENQ==
X-Gm-Message-State: APjAAAVWC9Ea3uI85EqdujwO6g9aGPHfxPCmTSmjr04/EvgX5sbI5Fsc b9OZhYxqOin/Ngj9MT4lBKne6vRQLUo=
X-Google-Smtp-Source: APXvYqzvT3Ju+IcmPHCzp3iH9VtKV2FMwW0Lwr8Dhf8c28X+HfN7pG5zw7XfKs+go80XP/eyDWY2bA==
X-Received: by 2002:ac8:2b3c:: with SMTP id 57mr24619257qtu.372.1553776900047; Thu, 28 Mar 2019 05:41:40 -0700 (PDT)
Received: from [192.168.2.27] (pool-108-28-114-43.washdc.fios.verizon.net. [108.28.114.43]) by smtp.googlemail.com with ESMTPSA id y5sm14606859qkl.73.2019.03.28.05.41.37 for <rats@ietf.org> (version=TLS1 cipher=AES128-SHA bits=128/128); Thu, 28 Mar 2019 05:41:38 -0700 (PDT)
User-Agent: Microsoft-MacOutlook/14.7.6.170621
Date: Thu, 28 Mar 2019 08:41:33 -0400
From: Carl Wallace <carl@redhoundsoftware.com>
To: "rats@ietf.org" <rats@ietf.org>
Message-ID: <D8C23800.D851F%carl@redhoundsoftware.com>
Thread-Topic: [Rats] More use cases for draft-richardson-rats-usecases-00
References: <MW2PR00MB03963ABEB87211AD28A16240A6490@MW2PR00MB0396.namprd00.prod.outlook.com> <12503.1552447661@localhost> <58E37DB5-098C-4387-9A52-4AECD0F69F25@island-resort.com> <6495.1553219901@dooku.sandelman.ca> <BA6E28A7-0F6A-46A8-AB1B-A64B9229F149@intel.com> <507.1553725386@dooku.sandelman.ca> <24C0968B-32B0-4EF1-99C8-61D3F0955BA1@intel.com> <793F9A34-050F-4914-AF4B-08C072730A06@island-resort.com>
In-Reply-To: <793F9A34-050F-4914-AF4B-08C072730A06@island-resort.com>
Mime-version: 1.0
Content-type: text/plain; charset="UTF-8"
Content-transfer-encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/Hmd8H-sKVgHmlUx-OFMCGa24DkE>
Subject: Re: [Rats] More use cases for draft-richardson-rats-usecases-00
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 28 Mar 2019 12:41:43 -0000

Example attestations from Android devices, Yubikey devices and Surface Pro
virtual smart cards can be found here:
https://github.com/Purebred/SampleAttestations. These are accompanied by
SCEP requests that include the attestations and the resulting
certificates. The attestations were generated and used as part of issuing
device and end user certificates where the public key was the focus of the
attestation. The Android and Yubikey attestations take the form of X.509
certificates (packaged as certs-only SignedData). The Surface Pro
attestations take the form of CMC requests.

On 3/28/19, 8:33 AM, "RATS on behalf of Laurence Lundblade"
<rats-bounces@ietf.org on behalf of lgl@island-resort.com> wrote:

>Here’s a starting point for Android Attestation
>https://developer.android.com/training/articles/security-key-attestation
>
>Includes around 20 claims about a key pair and the device that stores it
>as X.509 v3 extensions.
>
>LL
>
>
>_______________________________________________
>RATS mailing list
>RATS@ietf.org
>https://www.ietf.org/mailman/listinfo/rats