Re: [Rats] Adoption call for draft-lundblade-rats-eat-media-type

Dave Thaler <dthaler@microsoft.com> Wed, 24 August 2022 13:59 UTC

Return-Path: <dthaler@microsoft.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 15F7FC1522D6 for <rats@ietfa.amsl.com>; Wed, 24 Aug 2022 06:59:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.681
X-Spam-Level:
X-Spam-Status: No, score=-2.681 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.571, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vezY-lCP2XU6 for <rats@ietfa.amsl.com>; Wed, 24 Aug 2022 06:59:26 -0700 (PDT)
Received: from na01-obe.outbound.protection.outlook.com (mail-eastus2azlp170110002.outbound.protection.outlook.com [IPv6:2a01:111:f403:c110::2]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 520DCC14CF1F for <rats@ietf.org>; Wed, 24 Aug 2022 06:59:25 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=EVLf8XTjgyyZ9ou061gSEN8eu8aWYdrskysHAjuEl5bvm9LxzoHC9+gadqTCqbH2wfCM9zkdn8Sd3t++prscJiWjn1Xk1BIMFX9YotQ6iMN7cMJJ+F94kgBpUE1Zl6kVpvFRR85w/FjgX+M/HTsRurQwK+H0VHm4qCs1YT8VUo1BBKETJgUSVxTxatTO8E6B+8oLxDefSUCpOTAdqHnlgYK8KDzkziwaS+DDqvckaZp1uXlf4p+EDoxel1+rfaPZaYUdn0PBtIm8U2g2FK+HNjW39tqiEuQEWVyPccU1wXhpFKDpjE49sSUsV39dr5yU8G59I+r98Nk1nVrdF8fOxQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=1aP0yFEMvnvWDcSILIZXb0BaMT5q3zCNva9461FSOZ4=; b=WANE0iPkOO9aYNQ0PAZNVK9uaHCL7a6mboQDEGGHDLO+4zXg0ryY8Ah9OtPcvIpzKyaoUxaQWP6zqJoaNcFfMfQPfZUmCAL9Nps+Um0kBDKa8Sbn61I8i2p7mjAWBIrQwe4PhicQ+dp6MQdRSXgSI6HRC9J3MkYiRHtTKSSGsHJMFW36T9tJ/vO3hAhklbh1ibVd1mCybo6yprIVdqXMvg1psGdYTehHtyHhg/TTXS2WvFax5tA7Fhst9j4QYIgk4kToX9JcD9yaHH1fmU/zzoyKAS61ZjGv7/L+u5DKSx6p6KewwIudgpZdH057WObJw+37PtVpcqubdJ7U6X/Psw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=microsoft.com; dmarc=pass action=none header.from=microsoft.com; dkim=pass header.d=microsoft.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1aP0yFEMvnvWDcSILIZXb0BaMT5q3zCNva9461FSOZ4=; b=ag6qG4WO/zIjAchJILWR3wdCLuS044BmsgBPQfoK4+3NLdWsXIehi14kFSk8MbKQOKPi2swq8e5HqAGIRwWioRBxdtWbyJ+WaYi5oSbkNxWlrr/bjcLtK/LUYmW2qBVZaCTgGYpKrDTr32/RId1vtZGw8PMZ4P7qMqgtjTkxnGk=
Received: from CH2PR21MB1464.namprd21.prod.outlook.com (2603:10b6:610:89::16) by DS7PR21MB3644.namprd21.prod.outlook.com (2603:10b6:8:93::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5588.3; Wed, 24 Aug 2022 13:59:21 +0000
Received: from CH2PR21MB1464.namprd21.prod.outlook.com ([fe80::3433:1b77:6416:af00]) by CH2PR21MB1464.namprd21.prod.outlook.com ([fe80::3433:1b77:6416:af00%7]) with mapi id 15.20.5588.003; Wed, 24 Aug 2022 13:59:20 +0000
From: Dave Thaler <dthaler@microsoft.com>
To: Anders Rundgren <anders.rundgren.net@gmail.com>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: [Rats] Adoption call for draft-lundblade-rats-eat-media-type
Thread-Index: AQHYpsMCs6EDFOxIzUiT9jiMOcgr2K2dF/hggAEkyQCAH/dWMA==
Date: Wed, 24 Aug 2022 13:59:20 +0000
Message-ID: <CH2PR21MB14648356915D17DB33893EF8A3739@CH2PR21MB1464.namprd21.prod.outlook.com>
References: <BYAPR11MB291957ABA67F8D244406BCC8D69D9@BYAPR11MB2919.namprd11.prod.outlook.com> <CH2PR21MB14648DFF6D6188DA29851BB4A39C9@CH2PR21MB1464.namprd21.prod.outlook.com> <69991a8d-9dbd-e368-f48d-5e06d6c2e3e5@gmail.com>
In-Reply-To: <69991a8d-9dbd-e368-f48d-5e06d6c2e3e5@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=99544781-5920-4acb-9caa-fef05f8574b7; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2022-08-24T13:52:53Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47;
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=microsoft.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 6710cc8a-be14-4790-5b98-08da85d8d7e6
x-ms-traffictypediagnostic: DS7PR21MB3644:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH2PR21MB1464.namprd21.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(376002)(366004)(39860400002)(136003)(346002)(396003)(451199009)(8676002)(64756008)(66446008)(66556008)(66476007)(76116006)(10290500003)(316002)(55016003)(110136005)(8990500004)(5660300002)(66946007)(8936002)(52536014)(2906002)(122000001)(38100700002)(82960400001)(82950400001)(33656002)(38070700005)(86362001)(71200400001)(41300700001)(6506007)(7696005)(9686003)(26005)(478600001)(83380400001)(186003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DS7PR21MB3644
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/oU6D5P6YaQaJ7BohHxpCWz7PC9s>
Subject: Re: [Rats] Adoption call for draft-lundblade-rats-eat-media-type
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 24 Aug 2022 13:59:27 -0000

Anders Rundgren <anders.rundgren.net@gmail.com> writes:
> > And FYI to respond to Anders, the TEEP use definitely cannot use an in-object
> tag, and I expect some other uses outlined in the RATS architecture cannot
> either for the same reason.  Specifically, the TEEP use is to distinguish between
> (among other things) an EAT using the TEEP Profile, vs existing proprietary
> formats (such as SGX reports) that do not use CBOR.
> 
> Hi David,
> As we all know there are usually multiple ways to address a problem and this
> case is no exception :)
> 
> The established way dealing with different objects in an HTTP world is using
> different paths.  This has native support in most server frameworks while the
> support for media types is practically non-existent.
> 
> If for some reason SGX reports and EAT attestation must invoke the same
> application, wrapping SGX reports with with a tag ("wrapped EAT") seems like
> a reasonable alternative.
> 
> In short: EAT/TEEP/RATS would (IMO...) gain by sticking to de-facto standards.
> Media types are great but their primary use are in REEs.

The TEEP use of this draft is not in HTTP per se, but in TEEP messages.
HTTP carries TEEP messages.  TEEP messages carry attestation payloads.
Attestation payload formats are denoted with a media type carried in the TEEP message.

Separately, for use in HTTP, see RFC 9205's discussion of media types.  This was recently published by the HTTPbis working group.   It's possible (I don't know)
that it could be a useful Informative reference from the eat-media-type draft.

Dave