[Rats] Re: Call for adoption: draft-deshpande-rats-multi-verifier-04 (Ends 2026-04-24)
Henk Birkholz <henk.birkholz@ietf.contact> Thu, 23 April 2026 09:19 UTC
Return-Path: <henk.birkholz@ietf.contact>
X-Original-To: rats@mail2.ietf.org
Delivered-To: rats@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 59CBEE18BF6F; Thu, 23 Apr 2026 02:19:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1776935953; bh=0v2t9QsZYOUUiiVe+kAz5V7hCC2Od1BohVmcRXZ3qHE=; h=Date:Subject:To:Cc:References:From:In-Reply-To; b=CdI6fCtAs8BZNvx8ekIGaH3C+BVxzJTcAopiQKrkFl+68HMXF8zVnqUuzLFKf09P5 ON1TSVcz66XGlw4BiHwDrPSM51ScvL/aeYOXDri+RLfr57+7hsiNv2HlMaj/OLdXmF cWru/O6gTSmooshdD5B6sU34KJabZOR5lSPHMBqc=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -4.423
X-Spam-Level:
X-Spam-Status: No, score=-4.423 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, NICE_REPLY_A=-1.624, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=ietf.contact
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KsdWG6sUwS44; Thu, 23 Apr 2026 02:19:12 -0700 (PDT)
Received: from smtp01-ext2.udag.de (smtp01-ext2.udag.de [62.146.106.18]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 819FDE18BF3F; Thu, 23 Apr 2026 02:19:12 -0700 (PDT)
Received: from [134.102.118.211] (eduroam-pool7-1747.wlan.uni-bremen.de [134.102.118.211]) by smtp01-ext2.udag.de (Postfix) with ESMTPA id 5376CE00E1; Thu, 23 Apr 2026 11:19:03 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ietf.contact; s=uddkim-202310; t=1776935945; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=+fYAfOcnEcQXO8dG++a0BciXMqcOHWOrS9TDLQZeCAM=; b=ZwG5AmaroXkJkoRHR+J0EtWgPpjlmTMXD9JknOydDWyl+2rgRMXHhQrPWFdmpwcrxyW3ra 1wOg+wm5YTtzwh9LEUdbNOBaNPM6Dbsm3m/l0P+TR5wAlN/0ltA33yLOtePCGUBpiN/2jh epqHB5ZPtGr0LuE5B/YnQJtl8URKYhj9y0wv2zEyVQTgfGY8A2TItIy+uuB8JNCHpOskzc pO/TJ2TPZRwn+tiLTvJqq31JJfFGgIoM188gxudXVSxzKJYDSMJdJE1gDXGyzf1HPzg1lF 8xqtMT8WjTq4/Il6cG1LLI9pUoi+LlTuUnaeh7bN55s0k7PWb5mmDzFuF1e0qw==
Authentication-Results: smtp01-ext2.udag.de; auth=pass smtp.auth=henk.birkholz@ietf.contact smtp.mailfrom=henk.birkholz@ietf.contact
Message-ID: <89fac009-77f3-4352-4a71-7a34159afd68@ietf.contact>
Date: Thu, 23 Apr 2026 11:19:01 +0200
MIME-Version: 1.0
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.11.0
Content-Language: en-US
To: Manu Fontaine <Manu@hushmesh.com>, Simon Frost <Simon.Frost@arm.com>
References: <177643631672.70056.16474393035056250188@dt-datatracker-b45949c58-5szpr> <DB9PR08MB8699985F787BAF9E21A0C32FEF2D2@DB9PR08MB8699.eurprd08.prod.outlook.com> <CAHu=PL0k6=JNp=CT9j_PJ68eTD+e=uf+0SnDh53a=asNKAyWzg@mail.gmail.com>
From: Henk Birkholz <henk.birkholz@ietf.contact>
In-Reply-To: <CAHu=PL0k6=JNp=CT9j_PJ68eTD+e=uf+0SnDh53a=asNKAyWzg@mail.gmail.com>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: 8bit
Message-ID-Hash: GCE2UN52DUOLCPFELJWAUMNZO62LEZKV
X-Message-ID-Hash: GCE2UN52DUOLCPFELJWAUMNZO62LEZKV
X-MailFrom: henk.birkholz@ietf.contact
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-rats.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "rats@ietf.org" <rats@ietf.org>, "rats-chairs@ietf.org" <rats-chairs@ietf.org>, "draft-deshpande-rats-multi-verifier@ietf.org" <draft-deshpande-rats-multi-verifier@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Rats] Re: Call for adoption: draft-deshpande-rats-multi-verifier-04 (Ends 2026-04-24)
List-Id: Remote ATtestation procedureS <rats.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/HnfPthyK64t9tbCrb_TVXgr3IJM>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Owner: <mailto:rats-owner@ietf.org>
List-Post: <mailto:rats@ietf.org>
List-Subscribe: <mailto:rats-join@ietf.org>
List-Unsubscribe: <mailto:rats-leave@ietf.org>
Hi Manu, the authors, some significant part of the RATS WG (I assume), and definitely me, scope the term "Trusted Computing Base" to *only* the Attester, on which that term represents the set of Attesting Environments that have passed remote attestation plus the set of Target Environments that have passed remote attestation. Nothing more. A CSP ist not a TCB, a Relying Party is not a TCB. We should find very different terms for any "TCB"'ish thing that is outside of the Attester. And this is a hill that I'd be willing to fight for (please note the missing "will die on" 😉). Let's not overload yet another term, please. Just compose a definition - that is what is important and name it conflict free (maybe by prefixing some existing term with some qualifying words). Viele Grüße, Henk On 23.04.26 00:46, Manu Fontaine wrote: > Apologies for not participating actively, I don't have enough bandwidth. > > We agree this work is important; our perspective is that all relying > party trust decisions are compositions, which require multi-verifier > architectures (we currently operate a network of "verifiers of verifiers".) > > We also strongly share Usama's security and privacy concerns, which > amplify with each additional independent system. We wish RATS approached > the problem from the relying party's perspective. > > The full CC value proposition can only be achieved by minimizing trust > dependencies all the way to the relying party. This proposition degrades > quickly with any additional independent system added to the attester's > trust base (we sort of disagree with the sentence: "The Verifier is not > part of the Attester’s Trusted Computing Base"). > > We hope these issues get addressed later. > > Thanks, > M > > > On Wed, Apr 22, 2026 at 6:42 PM Simon Frost <Simon.Frost@arm.com > <mailto:Simon.Frost@arm.com>> wrote: > > I support adoption. The need for multi verifiers is growing and > adoption will help bring an appropriate level of rigor to address > the challenges from the additional complexity. > > Thanks > Simon > > -----Original Message----- > From: Ned Smith via Datatracker <noreply@ietf.org > <mailto:noreply@ietf.org>> > Sent: 17 April 2026 15:32 > To: rats@ietf.org <mailto:rats@ietf.org>; rats-chairs@ietf.org > <mailto:rats-chairs@ietf.org>; > draft-deshpande-rats-multi-verifier@ietf.org > <mailto:draft-deshpande-rats-multi-verifier@ietf.org> > Subject: [Rats] Call for adoption: > draft-deshpande-rats-multi-verifier-04 (Ends 2026-04-24) > > This message starts a rats WG Call for Adoption of: > draft-deshpande-rats-multi-verifier-04 > > This Working Group Call for Adoption ends on 2026-04-24 > > Abstract: >   IETF RATS Architecture, defines the key role of a Verifier. In a >   complex system, this role needs to be performed by multiple Verfiers >   coordinating together to assess the full trustworthiness of an >   Attester. This document focuses on various topological patterns for >   a multiple Verifier system. It only covers the architectural > aspects >   introduced by the Multi Verifier concept, which is neutral with >   regard to specific wire formats, encoding, transport mechanisms, or >   processing details. > > Please reply to this message and indicate whether or not you support > adoption of this Internet-Draft by the rats WG. Comments to explain > your preference are greatly appreciated. Please reply to all > recipients of this message and include this message in your response. > > Authors, and WG participants in general, are reminded of the > Intellectual Property Rights (IPR) disclosure obligations described > in BCP 79 [2]. > Appropriate IPR disclosures required for full conformance with the > provisions of BCP 78 [1] and BCP 79 [2] must be filed, if you are > aware of any. > Sanctions available for application to violators of IETF IPR Policy > can be found at [3]. > > Thank you. > [1] https://datatracker.ietf.org/doc/bcp78/ > <https://datatracker.ietf.org/doc/bcp78/> > [2] https://datatracker.ietf.org/doc/bcp79/ > <https://datatracker.ietf.org/doc/bcp79/> > [3] https://datatracker.ietf.org/doc/rfc6701/ > <https://datatracker.ietf.org/doc/rfc6701/> > > The IETF datatracker status page for this Internet-Draft is: > https://datatracker.ietf.org/doc/draft-deshpande-rats-multi-verifier/ <https://datatracker.ietf.org/doc/draft-deshpande-rats-multi-verifier/> > > There is also an HTML version available at: > https://www.ietf.org/archive/id/draft-deshpande-rats-multi-verifier-04.html <https://www.ietf.org/archive/id/draft-deshpande-rats-multi-verifier-04.html> > > A diff from the previous version is available at: > https://author-tools.ietf.org/iddiff?url2=draft-deshpande-rats-multi-verifier-04 <https://author-tools.ietf.org/iddiff?url2=draft-deshpande-rats-multi-verifier-04> > > IMPORTANT NOTICE: The contents of this email and any attachments are > confidential and may also be privileged. If you are not the intended > recipient, please notify the sender immediately and do not disclose > the contents to any other person, use it for any purpose, or store > or copy the information in any medium. Thank you. > _______________________________________________ > RATS mailing list -- rats@ietf.org <mailto:rats@ietf.org> > To unsubscribe send an email to rats-leave@ietf.org > <mailto:rats-leave@ietf.org> >
- [Rats] Call for adoption: draft-deshpande-rats-mu… Ned Smith via Datatracker
- [Rats] Re: Call for adoption: draft-deshpande-rat… Henk Birkholz
- [Rats] Re: Call for adoption: draft-deshpande-rat… Thomas Fossati
- [Rats] Re: Call for adoption: draft-deshpande-rat… Ned Smith IETF
- [Rats] Re: Call for adoption: draft-deshpande-rat… Panwei (William)
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Paul Howard
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Simon Frost
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Manu Fontaine
- [Rats] Re: Call for adoption: draft-deshpande-rat… Antoine Fressancourt
- [Rats] Re: Call for adoption: draft-deshpande-rat… Henk Birkholz
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Manu Fontaine
- [Rats] Re: Call for adoption: draft-deshpande-rat… ghada.arfaoui
- [Rats] Re: Call for adoption: draft-deshpande-rat… Kathleen Moriarty
- [Rats] Re: Call for adoption: draft-deshpande-rat… Nicolae Paladi
- [Rats] Re: Call for adoption: draft-deshpande-rat… Henk Birkholz
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Carl Wallace
- [Rats] Re: Call for adoption: draft-deshpande-rat… Thomas Fossati
- [Rats] Re: Call for adoption: draft-deshpande-rat… Michael Richardson
- [Rats] Re: Call for adoption: draft-deshpande-rat… Ned Smith IETF
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Yogesh Deshpande
- [Rats] Re: Call for adoption: draft-deshpande-rat… Manu Fontaine
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Jag Raman
- [Rats] Re: Call for adoption: draft-deshpande-rat… Yuxuan Song
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Ned Smith IETF
- [Rats] Re: Call for adoption: draft-deshpande-rat… Carl Wallace
- [Rats] Re: Call for adoption: draft-deshpande-rat… Henk Birkholz
- [Rats] Re: Call for adoption: draft-deshpande-rat… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Manu Fontaine
- [Rats] Re: Call for adoption: draft-deshpande-rat… Henk Birkholz
- [Rats] Re: Call for adoption: draft-deshpande-rat… Kathleen Moriarty
- [Rats] Re: Call for adoption: draft-deshpande-rat… Kathleen Moriarty
- [Rats] Re: Request for AD Guidance: Procedural In… Muhammad Usama Sardar
- [Rats] Re: Call for adoption: draft-deshpande-rat… Yogesh Deshpande
- [Rats] RP- Trust in a Multi Verfier EcoSystem Yogesh Deshpande