Re: [Rats] Attestation Terminology

Henk Birkholz <henk.birkholz@sit.fraunhofer.de> Wed, 20 September 2023 10:41 UTC

Return-Path: <henk.birkholz@sit.fraunhofer.de>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3672BC14CE44 for <rats@ietfa.amsl.com>; Wed, 20 Sep 2023 03:41:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.098
X-Spam-Level:
X-Spam-Status: No, score=-7.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, NICE_REPLY_A=-0.091, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=sit.fraunhofer.de header.b="oQiIiG83"; dkim=pass (1024-bit key) header.d=fraunhofer.onmicrosoft.com header.b="EFY0/Hpg"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rQan_pkasaFN for <rats@ietfa.amsl.com>; Wed, 20 Sep 2023 03:41:05 -0700 (PDT)
Received: from mail-edgeKA24.fraunhofer.de (mail-edgeka24.fraunhofer.de [IPv6:2a03:db80:4420:b000::25:24]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6C20CC14CE2E for <rats@ietf.org>; Wed, 20 Sep 2023 03:41:02 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=sit.fraunhofer.de; i=@sit.fraunhofer.de; q=dns/txt; s=emailbd1; t=1695206464; x=1726742464; h=message-id:date:subject:to:references:from:in-reply-to: content-transfer-encoding:mime-version; bh=klZ/R5mwXdQUemA7xYuRvSEJCY62CN/yJeFeKZJ2OuI=; b=oQiIiG83/bTm7dCqMk8XnMNS+gaBZMY8BXq5Dd1xIC1xM5Em6CiisKLh COjArQmiGjiC/aU6fpi4y/ZSDq7IsfSHFdcDz7GNbYT5sof6r1ARLn5Wt hUJ4vf64p+lIY79I2nZ3tWA4ud/gYV18J5UzD0dkxaec0SzGanrCw+yYB Ml9V21K2twtQrHhkk3p8OMGvZB5+LNbfS9xYcfbq2jb2lZAm1a37gQH/G /rEiOjNDytWj0JWd7uAZy1+yy/r/+tJC2Z5z3aG9nVOlmmlJ27cMDeZgJ C9VpiN2tVqdDn2cC6gpLB7FXZMpXkjO1U+QbJKQ/ypJYKXIGgZi+fcAMt w==;
Authentication-Results: mail-edgeKA24.fraunhofer.de; dkim=pass (signature verified) header.i=@fraunhofer.onmicrosoft.com
X-IPAS-Result: A2HSBQDdywpl/xmnZsBRCYEJgU+CN3mBXIRTkTItA5xPgSwUgREDTQkPAQEBAQEBAQEBCAEuDQkEAQEDBIIMgnQChwInNAkOAQIBAwEBAQEDAgMBAQEBAQEDAQEGAQEBAQEBBgYCgRmFLzkNg36BHgEBAQEBAQEBAQEBAR0CNQwlAR4BAQEBAgEBASEPAQUIAQEsDAQLCQISBgICERUCAicLFw4GAQwGAgEBF4JjAYIqAw4jFAaUQZs4eoEygQGCCQEBBrAfGF+BXwMGCQGBEC6DXIQtAYVRhDUXH4FVRIEVJw+CdT6CIEIBAQGBGBsWVYMcgmiJRoJ3ggUVLgcygQwMCSxZgy8qiiUqgQgIXIFqPQINVAsLXYERUTiBOwICEScSFAVCCGgbAwcDgQQQKwcEMhsHBgkWGBUlBlEELSQJExI+BIFngVEKgQY/EQ4RgkUrNjYZS4JdCRUMNQRKdhArBBQYgRMEah8VHjcREhkNAwh2HQIRIzwDBQMENgoVDQshBVcDRwZLCwMCHAUDAwSBNgUPHgIQGgYOKQMDGVACEBQDPgMDBgMLMAQOAxkrHUACAQttPTUGAwsbRgInoUQDbiyBPRYBFEYFAWQEQw4CIDsYCVENBE6NN4UtQSaOXaEigQI0B4IxgV2BWQYMmCKGfQYTL5clkVhilVSCWSCif4R9AgQCBAUCDgiBY4IWTSRPgmdSGQ+SGIUUimd0AjkCBwEKAQEDCYhvgXtfAQE
IronPort-PHdr: A9a23:Ycx4tRVvt/N8DbkNkXQIx1ntRLnV8KysVDF92vMcY89mbPH6rNzra VbE7LB2jFaTANuIo/kRkefSurDtVSsa7JKIoH0OI/kuHxNQh98fggogB8CIEwv8KvvrZDY9B 8NMSBlu+HToeVMAA8v6albOpWfoqDAIEwj5NQ17K/6wHYjXjs+t0Pu19YGWaAJN11/fKbMnA g+xqFf9v9Ub07B/IKQ8wQebh3ZTYO1ZyCZJCQC4mBDg68GsuaJy6ykCntME2ot+XL/hfqM+H 4wdKQ9jHnA+5MTtuhSGdgaJ6nYGe0k9khdDAFugjlnwXsLxnijFv/tGyCiQbeqvYoJsVWz95 LlPSRLZmj4lDiY13TrUktFVnbNKsAic8k8aocbeNay7BaI5XrvSII0hYnMaB95qRhZGO5GwL NI3BPZRfs9YoITDqlguoALjRiPrOPO0yTV2plvXxfcw1OM8LiXh5yZ9Ht0StWTpvP/QaY5IC Meay7bE5zHlbv9p1wz95bn6LhAmgeHUQ5NoTJrp5Q4hTSfZsU+Jja3sOXC6695Rsje5t9M+U NugkG8Ltw9/mWK+/J8Wu7OQgosf7gz6935V2advBYGlcFx4W/OLD84D/zHfNpFxRNslWX0to ish17ka7IayZzNZoHxG7xvWavjCfoSH7zHKDrrXLy1xmXRlf7yynVC+/Bvoxu79U5ys2U1R5 mpek9bKv2wQzRGb9MWdS/V880vgkTaC3gze8KdFdGg6j6PGLZ4mzLMq0J0VtEXIBCjtn0vqy qSRcy0Z
X-Talos-CUID: 9a23:zOOlk2yZDcZ+6YTuWkktBgU6Qc0Iby2MlU32CF6pLmdnF5+WZ0ePrfY=
X-Talos-MUID: 9a23:ilpkmQ1Q+WFC/Usswx3oXgUBGzUjzIqAKB9XvsQ/+NijGwdqYy6NjQqsa9py
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="6.02,161,1688421600"; d="scan'208";a="59315068"
Received: from mail-mtadd25.fraunhofer.de ([192.102.167.25]) by mail-edgeKA24.fraunhofer.de with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 20 Sep 2023 12:40:58 +0200
IronPort-SDR: 650acc39_+Jt1/4KnpKn4Kj6HdBz61UlcQId2s+ksewtONYn6kg9EQ3/ hUAnET/PnSbhINFqeK6IXD38UtpSzVtYJVsJ+Yg==
X-IPAS-Result: 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
IronPort-PHdr: A9a23:tyLwHx2UJtCrnVXdsmDO5gUyDhhOgF2JFhBAs8lvgudUaa3m5JTrZ hGBtr1m2UXEWYzL5v4DkefSurDtVT9lg96N5X4YeYFKVxgLhN9QmAolAcWfDlb8IuKsZCs/T 4xZAURo+3ywLU9PQoPwfVTPpH214zMIXxL5MAt+POPuHYDOys+w0rPXmdXTNitSgz/vTbpuI UeNsA/Tu8IK065vMb04xRaMg1caUONQ2W5uORevjg7xtOKR2bMmzSlKoPMm8ZxwFIDBOokoR rxRCjsrdls44sHmrzDvZguC7XhPNwdemBodAyTG0xjrZYfwuHvd78VPgCXCYsboabE5aCa7z Z5zRDKziz8aEi8o4XHNt5kj6cATqkeMiS0nhK7Mb9zLD91nJfrFRsIgQlNTUoUIbyddUsCVb 4QCMecCHetB8srX4Gce9hi0OymIJfu1wDhPm0DS+pYQjuUuDQTW4RwKOo8n6i3zg9LqOI0Wd +G586fzzTjyXa9W3hftsJbpai1xmd3LU+hUbfXL0G0OHgWGoWiq9Y26HWusiOE0vHOaw/ZuW 9n1mlR/kTBL+zymzONwtIuSqps0kHCY6B1rw7wYCsLtGwZrJN++F51IsDuGcpF7Wd4mXzRws T0hmdXu2La+dSkOjZE7zjLzMaHBfZKB/xTjU+icO3F0iSEtdLG+gkOq+FO7gq3nV8ay2UpXt CcNjNTWt34M2hCSosiKQ/dw5AGgjB6BzQnO7OFDL00u063dLp8q2LkrkZQP90/EG0fL
IronPort-Data: A9a23:rZc/BKD1hbBZDxVW/4jlw5YqxClBgxIJ4kV8jS/XYbTApG4h12RWy WZJWjuEOviMZTanLtoja43j8RgD7JbTnNZlOVdlrnsFo1CmBibm6XR1Cm+qYkt+++WaFBoPA /02M4WGdoZuJpPljk/FGqD7qnVh3r2/SLP5CerVUgh8XgYMpB0J0HqPoMZnxNYy6TSFK1nV4 4iq8peHYAbNNwNcawr41YrT8HuDg9yv4Fv0jnRmDdhXsVnXkWUiDZ53Dcld+FOhH+G4tsbjL wry5OnRElHxpn/BOfv5+lrPSXDmd5aJVeS4Ztq6bID56vRKjnRaPq/Wr5PwY28P49mCt4gZJ NmgKfVcRC9xVpAgltjxXDEFDAcuA/RK14XmPDuBm96Yy0HtU1vFlqAG4EEeZeX0+85sBH1Ws /EIIzBLYAqKmuS2x7y2UK9gi6zPLuGyYdhZ6y4mlG6IS698HvgvQI2SjTNc9Dc9gMMIF/fEZ MoebShHdxXcJRNVM0oRCJUwkf3uinSXnzhw8QLI/PprsjGLpOB3+KDyFP3fStjTfIZ+mmadi mub5USnPThPYbRzzhLAqBpAnNTnnSr9Xo8JUqGj/f5tjlCVx2M7ExwbUFa9ur+yjUvWc9JWL UoZ4WwytqMy80KmSNjydxK9sDiCswJ0c8BZD/YS6QyRxOzT+QnxO4QfZmccM5l364pvGm1vj wXW2c3sQzcpvqecVHSd8bmZt3W+NED5MFM/WMPNdiNci/HLrps6kxTPSdhuCuiyiNj0Eiv32 DeEsG41gLB7sCLB///TEYnv0mry9KvaBBU4/BvWVW+D5wZ0LtztLY+x5FSRqb4KII+FRxPT9 DIJiuqP3tAoVJutrS2qRPlSPbeL4/3eDibQr2QyFLYc9hOs2UWZQ6Zu3B9EKnxEDOM4aB7yQ UqKuQpu9J5ZZ3SrSqlsYrOOMcchzIm+NNLDSvz0R8d8UphzfSTa+SprSxea2mDzok0SgIU6A 5O6cNmtP1keG69I3Dq7fMZD8L4JlwQV53LfeoD/9DujiYGhXX+yTawUFmeOYsQSzrK2kC+M/ /lxb8K1mghiCsvgaSzpwKsvBFEtL0ljI6vpqsZSJ9WxEiA/FE4PU/bukK4cIap7lKFol8DNz HG3emlc7HHd3XTnCwG7WkpPWYPVf6RUjCwEZHQ3HFOSxXIcT56l7/4fe7sJbLAXzrFf4sAuf cYVWferI6ppemzc9iU/fKvNitVoVC6WiDKkOwunZzkCfKBceTHZx++8QCzR8HghMynmk+o/v Lyq6S3DS7UhWQlJLZjbedCv/XyLrFkfn+N5BU+QBtxhaXTczpVjBH30vM8WPvMjFBTn7RmZ3 jawHh03i7TsoYg00d+RnoGCjd6jPNVfF3pgPVvwzOiJJwzF2FG80Kl8UOqsVhLMZlPeoamNS 71c8KDhDachgl1PjbtZL59q6qAPv/3UuL5Qy1VfLkXhNliEJOtpHSib4JNpqKZI+75+vDm2U GKp/v1xG+2AGOHhIW4rCDsVVMax/tBKpWCK9tUwGlvw2wFv9rneUUlyAQiFuBYAEJRLarEa0 cUTk+9IzTznkRc7EMe0vgYN/US2E3EweaEGtJYbPYzVtjQW2mxyOZzxNyunz6yMOvNtM1YrK AC6nKDtpapR7WucfmsRFUri5/t8h5MPs0pOlHsHFUW4quTYj9Bm2S9h0CkFYTlU6j5l0OtDH HdhGGMoBKeJ/hZu3NNiWUL1ES5/JRSpwG7D4HpXq3/8UG+TSX3rEG0xHc2v7XIp2TtQURYD9 Y7J1Vu/dyjhef/A+xcbWGlnmqTFdsNw/AiTo/KXNZ2JMLdiaAW0n5L0Q3QDribmJsYDhEfng +1O18QoYI3ZMR8gmYEKO7O4558xFi/dfHdjRMt/9pwnBWvfITG++QafInCLJ/9iGab4zl+aO edPeOR/Dhiw7XPb5HRTT6sBOKR9k/MV9cIPMOGjb3IPt7yE6CFlqtTM/yz5n3UmWMhqjd17E I7KajaeCSaFsBO4QYMWQBVsYQJUueU5WTA=
IronPort-HdrOrdr: A9a23:k5v+/aivrtFLGuxZG48XHzFqu3BQXiQji2hC6mlwRA09TyX4ra CTdJZy73XJYVMqNU3I9urwXJVoLUmxyXcW2+cs1N6ZNWGMhILCFuBfBOXZrAHIKmnX7e5X3e NMb7N3A9j9IVxzjcO/3RKxGdQt2/mLmZrY4Nv2/jNEVgFgY+VH9Ad2CgGSD01wSk1vHIM9FJ CV+8pAoFObCBYqR/X+LmIEVOCGgcbKmpLgaQMHABBi0wWHiDfA0s+YLySl
X-Talos-CUID: 9a23:M5mPhmo4mUnGqTkMhROLIZbmUZ06VC3jlXv/GW6lSlhDWraRRXSw2Ioxxg==
X-Talos-MUID: 9a23:3THIPwWQa7qKNpzq/CfzoBZoBMMx2ueFDGAIvZxboenaCgUlbg==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="6.02,161,1688421600"; d="scan'208";a="185184910"
Received: from 153-97-179-127.vm.c.fraunhofer.de (HELO smtp.exch.fraunhofer.de) ([153.97.179.127]) by mail-mtaDD25.fraunhofer.de with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 20 Sep 2023 12:40:56 +0200
Received: from XCH-HYBRID-04.ads.fraunhofer.de (10.225.9.46) by XCH-HYBRID-03.ads.fraunhofer.de (10.225.9.57) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1258.16; Wed, 20 Sep 2023 12:40:56 +0200
Received: from DEU01-BE0-obe.outbound.protection.outlook.com (104.47.7.169) by XCH-HYBRID-04.ads.fraunhofer.de (10.225.9.46) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1258.16 via Frontend Transport; Wed, 20 Sep 2023 12:40:56 +0200
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=J7yMmE+gqXMcoOPhHe9ZoI6iyewTuXw0EqYf6W3zF2iQqx9zYS2Ejw1VGhUYbc+HE9QTVdbiQ6z03u653KFSxtzGlt5h65lGxYzsoJHOVaXOtl2M/Y4cnNm+lg9ITp4UJoAk00/V421zDUDuPoeuRduUcc0L6CGSV+SBjiN0vTojdwwYkFWVvmeI+QJvGGB7rEqBmMFwcFj28kUOdcTg/voTYJQj6qFLkA6WiGdM5CB8ZKKTWINxuqYL4vW3qUMkrEzoOIUPQOqnzvpAMqeKWv85Z9hMnTSipvrhBAnz3x09+0RdFw6hVpDYaKGVuuHhBeGk8CtGf5ZdS7uNRFrRsQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=hDkWaySxib8O1GZ0d07cvLieYzqJQpdE3kpuMyyyxrU=; b=gZ+kVnlAjSDSeFN13OmfPS9SqU/Qqthi4dyW4BkP4a9df6JcI9l73O0StxLCWroRvTsYqtElYqHky/tXuyltlYY5X2TucCVnj9H2vg3+HwwEq4t92gef4VESCLvQ88q6XfpcSCMMYgGQktJIxxZVx2dMhfwO8xp7aacmVnFfoWYkX209SysIDuTCWSmybB7EI8S1uTYKw4nJK1F+/YNhFvQxWIRixB2FTGfbwv16qJ2mIG7+N/NCLsHrzvSiAU2k7amFFOxiGFYR8XLNZ8vNPaQ1EgyuRj08JVkQnhKpMWyskoJ3+F0BCSIn3wMT6hYMrFhzS0u3PJ0D5spcgNnWQw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=sit.fraunhofer.de; dmarc=pass action=none header.from=sit.fraunhofer.de; dkim=pass header.d=sit.fraunhofer.de; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fraunhofer.onmicrosoft.com; s=selector2-fraunhofer-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=hDkWaySxib8O1GZ0d07cvLieYzqJQpdE3kpuMyyyxrU=; b=EFY0/Hpg56SOq31pSyRoQzd+1Pct8+AhgeVekHeq5+B/Tx3kbVHLIp2boouWLOSB5igtmxUxBM5A21OGowdBlNidWfSheYZ4hoHx0vIpU8PD/f2LtWrqLIan+GUR4i7J0Q6mQgsiDtffS2yR0RYR1labL4Vj3DqI2H4uPzkREGw=
Received: from FR0P281MB2879.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d10:4c::8) by FR3P281MB1678.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d10:7d::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6792.27; Wed, 20 Sep 2023 10:40:53 +0000
Received: from FR0P281MB2879.DEUP281.PROD.OUTLOOK.COM ([fe80::8c6c:8204:222b:3cae]) by FR0P281MB2879.DEUP281.PROD.OUTLOOK.COM ([fe80::8c6c:8204:222b:3cae%3]) with mapi id 15.20.6792.026; Wed, 20 Sep 2023 10:40:53 +0000
Message-ID: <7ba3ca5c-94ef-079a-cf35-9fc63d3a8f96@sit.fraunhofer.de>
Date: Wed, 20 Sep 2023 12:40:49 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.11.0
Content-Language: en-US
To: "Tschofenig, Hannes" <hannes.tschofenig@siemens.com>, "hannes.tschofenig@gmx.net" <hannes.tschofenig@gmx.net>, "rats@ietf.org" <rats@ietf.org>
References: <002e01d9eaca$65aa4010$30fec030$@gmx.net> <cfaf21a1-7294-fcb1-b16b-17280ff56704@sit.fraunhofer.de> <AS8PR10MB74272E2A0BA72B343E55450FEEF9A@AS8PR10MB7427.EURPRD10.PROD.OUTLOOK.COM>
From: Henk Birkholz <henk.birkholz@sit.fraunhofer.de>
In-Reply-To: <AS8PR10MB74272E2A0BA72B343E55450FEEF9A@AS8PR10MB7427.EURPRD10.PROD.OUTLOOK.COM>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: 8bit
X-ClientProxiedBy: FR3P281CA0098.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d10:a1::14) To FR0P281MB2879.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d10:4c::8)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: FR0P281MB2879:EE_|FR3P281MB1678:EE_
X-MS-Office365-Filtering-Correlation-Id: 4d49dee1-56dc-492a-3b68-08dbb9c61030
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:FR0P281MB2879.DEUP281.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230031)(396003)(366004)(39860400002)(136003)(376002)(346002)(186009)(1800799009)(451199024)(8676002)(8936002)(6512007)(2616005)(83380400001)(66574015)(41300700001)(110136005)(316002)(66476007)(66556008)(66946007)(6506007)(5660300002)(6666004)(53546011)(6486002)(2906002)(478600001)(966005)(86362001)(44832011)(82960400001)(38100700002)(31696002)(31686004)(45980500001)(43740500002); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-MS-Exchange-CrossTenant-Network-Message-Id: 4d49dee1-56dc-492a-3b68-08dbb9c61030
X-MS-Exchange-CrossTenant-AuthSource: FR0P281MB2879.DEUP281.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 20 Sep 2023 10:40:53.0716 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: f930300c-c97d-4019-be03-add650a171c4
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: y8vIDLer2YbCjFCScQwMh2p81LB7AQSmEpVE9Zr2vXYyGExG0orM8ZWsvL/ii83X8efpPEmzNXV+QjuruTvHbwVcX4z8wMp1vP/6tiD7uho=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: FR3P281MB1678
X-OriginatorOrg: sit.fraunhofer.de
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/Q8PFY0tUBCElimBeoRfmWdqQSno>
Subject: Re: [Rats] Attestation Terminology
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 20 Sep 2023 10:41:11 -0000

Hi Hannes,

no, I do not think there was ever a list discussion on the term. Maybe I 
missed that. It might be useful to restate the whole definition from 
https://www.ietf.org/archive/id/draft-ietf-rats-tpm-based-network-device-attest-14.html 
here:

> Attestation: the process of generating, conveying and appraising claims, backed by evidence, about device trustworthiness characteristics, including supply chain trust, identity, device provenance, software configuration, device composition, compliance to test suites, functional and assurance evaluations, etc.

The definition follows the context of NIST's 1st definition of 
`Attestation` as it describes an activity and the definition does unify 
IETF and TCG ("TPM/DICE/MARS") terminology.

In general, there was a lot of avoidance to become specific wrt to terms 
such as `Root of Trust` or `Attestation` in the scope of the 
architecture RFC. I am okay with becoming more specific in the RATS 
context, but that seems to be a strategy change to me and should become 
(maybe a lightweight) discussion here on the list. I doubt this is the 
first time this comes up, but taking into account the hesitance of key 
stakeholder in remote attestation to define such terms to rigidly, I 
would not be surprised if there is no referencable definition still.


Viele Grüße,

Henk

On 20.09.23 11:00, Tschofenig, Hannes wrote:
> Hi Henk,
> 
> as you can imagine, I am confused. You are saying that the RATS group couldn't agree on a term for "attestation" in the architecture document. But now the term is defined in another RATS document, namely <ietf-rats-tpm-based-network-device-attest>.
> Is that because you finally found an agreement or just because nobody in the group wasn't paying attention?
> 
> Regarding key attestation: IMHO it is what we are providing with draft-ietf-lamps-csr-attestation where Evidence includes information about the private key being stored in a hardware security module. I don't have a good definition of the term myself and hence I was wondering whether there is some established terminology in TCG or elsewhere already. It cannot be the first time that this issue arises.
> 
> Ciao
> Hannes
> 
> -----Ursprüngliche Nachricht-----
> Von: RATS <rats-bounces@ietf.org> Im Auftrag von Henk Birkholz
> Gesendet: Dienstag, 19. September 2023 13:59
> An: hannes.tschofenig@gmx.net; rats@ietf.org
> Betreff: Re: [Rats] Attestation Terminology
> 
> Hi Hannes,
> 
> w.r.t.: `attestation`
> 
> there is no satisfying answer to your question, I afraid. The RATS architecture was explicitly and carefully worded to avoid the word `attestation` as a stand alone term. As it causes confusion in the context of "activity vs. message" and is horribly overloaded, in general:
> 
>> https://csrc/
>> .nist.gov%2Fglossary%2Fterm%2Fattestation&data=05%7C01%7Channes.tschof
>> enig%40siemens.com%7C04d90290edb94ff2833508dbb907da4c%7C38ae3bcd95794f
>> d4addab42e1495d55a%7C1%7C0%7C638307215597987825%7CUnknown%7CTWFpbGZsb3
>> d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7
>> C3000%7C%7C%7C&sdata=wUKkQ85T%2BEDnoE2e7CENvC%2FGBvZLlCz8WtSdv%2F%2F%2
>> FQ2Q%3D&reserved=0
> 
> (here NIST captures the confusion in a nutshell)
> 
> That is why RATS is about _remote attestation_, and corresponding activities, such as Evidence Generation, Conveyance, Appraisal, etc.
> 
> w.r.t.: `key attestation`
> 
> The RATS WG has not defined the more narrow term "key attestation"
> today. As Denis pointed out, "OpenID for Verifiable Credential Issuance"
> does, for example. Looking at that definition there are two essential
> components:
> 
> 1.) "a certificate including a certificate chain asserting that a particular key is managed, for example, by a hardware security module"
> 
> 2.) "provide this data along with the proof of possession in the Credential Request"
> 
> In RATS (IETF/TCG) words, I think, openid is defining `key attestation` as as an Endorsement (according to 1.) of key material that is then combined with a PoP (according to 2.). That is not the same thing as remote attestation, as there is no Evidence about the trustworthiness of the Attester generated.
> 
> I am not entirely sure how useful it would be for the RATS WG to specify
>    yet another meaning of the term `key attestation`. What I would see as useful in any case, however, would be writing up a definition (independent of any name). Maybe something along the lines of "Evidence about an endorsed key storage that is augmented with a PoP of a stored key" or something to that effect.
> 
> But that probably just reflects my half-baked understanding of "RATS key attestation"... what would you think `key attestation` means in the context of RATS, Hannes?
> 
> 
> Viele Grüße,
> 
> Henk
> 
> On 19.09.23 09:24, hannes.tschofenig@gmx.net wrote:
>> Hi all,
>>
>> I am wondering why the group has not defined the term "attestation" in
>> the RATS architecture RFC. Instead, it is defined in a solution
>> document <ietf-rats-tpm-based-network-device-attest> where nobody finds it.
>>
>> Ciao
>> Hannes
>>
>> PS: Where is the term "key attestation" defined?
>>
>>
>> _______________________________________________
>> RATS mailing list
>> RATS@ietf.org
>> https://www/.
>> ietf.org%2Fmailman%2Flistinfo%2Frats&data=05%7C01%7Channes.tschofenig%
>> 40siemens.com%7C04d90290edb94ff2833508dbb907da4c%7C38ae3bcd95794fd4add
>> ab42e1495d55a%7C1%7C0%7C638307215597987825%7CUnknown%7CTWFpbGZsb3d8eyJ
>> WIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000
>> %7C%7C%7C&sdata=eCDY%2F9fUK5Jo1UHtMPf6qz3pJWAwyk8xu0qTEkm6288%3D&reser
>> ved=0
> 
> _______________________________________________
> RATS mailing list
> RATS@ietf.org
> https://www.ietf.org/mailman/listinfo/rats