Re: [Rats] Call for adoption (after draft rename) for Yang module draft

"Eric Voit (evoit)" <evoit@cisco.com> Mon, 18 November 2019 08:35 UTC

Return-Path: <evoit@cisco.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 76F0A1208FE for <rats@ietfa.amsl.com>; Mon, 18 Nov 2019 00:35:58 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.502
X-Spam-Level:
X-Spam-Status: No, score=-14.502 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=Eu2BfRbw; dkim=fail (1024-bit key) reason="fail (body has been altered)" header.d=cisco.onmicrosoft.com header.b=Y6U35N+L
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lGyzWgW4HX8v for <rats@ietfa.amsl.com>; Mon, 18 Nov 2019 00:35:55 -0800 (PST)
Received: from alln-iport-6.cisco.com (alln-iport-6.cisco.com [173.37.142.93]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A57381200CE for <rats@ietf.org>; Mon, 18 Nov 2019 00:35:55 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=7623; q=dns/txt; s=iport; t=1574066155; x=1575275755; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=pY1JFk8qLbcp7rAYArqi6j/ozPffoOInuNZe9IWptIY=; b=Eu2BfRbwVZE98LApOlG6gKy139R6Pl3CRP3F0kBOeoe7YzU7p7luZX2t g0TDkymMVLxYnXb2OzyIwYAH/1cyZ04s2iDCEl2h21cuv3Ca5QukrwpTq tMTTaEz8R2Kl3zseKFRxtTjg4KD2WC2Qen2nF3vGH9Zx3FBkpuoGbfHxS o=;
X-Files: smime.p7s : 3975
IronPort-PHdr: 9a23:GSEYqxGcvt/1+OWZOuDMoJ1GYnJ96bzpIg4Y7IYmgLtSc6Oluo7vJ1Hb+e4w3A3SRYuO7fVChqKWqK3mVWEaqbe5+HEZON0pNVcejNkO2QkpAcqLE0r+efP0aC0mNM9DT1RiuXq8NBsdFQ==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0AKAACfVtJd/5NdJa1iAxkBAQEBAQEBAQEBAQEBAQEBAREBAQEBAQEBAQEBAYFrAwEBAQEBCwGBSlAFbCstIAQLKgqEIINGA4pxgl6YAIEugSQDVAIHAQEBCQMBARgIDQIBAYRAAoIjJDUIDgIDCwEBBAEBAQIBBQRthTcMhVEBAQEBAQEBAQEQCwYdAQEsCwEECQICAQgQBQMqAgICGQwLJQIEAQ0FCAYUgwGBeU0DDhEPAQIMoxMCgTiIYHWBMoJ+AQEFgUhBgncYghAHAwYFgTEBgVKKQhiBQD+BEUaCTD6CYgEBAYFiFQomgkkygiyNSIISOZ4aCoIqg06CNI9omhGOSJoIAgQCBAUCDgEBBYFUAzSBWHAVO4JsUBEUkRqDczOEYYU/dAGBJ4wpATNbAQE
X-IronPort-AV: E=Sophos;i="5.68,319,1569283200"; d="p7s'?scan'208";a="382617014"
Received: from rcdn-core-11.cisco.com ([173.37.93.147]) by alln-iport-6.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 18 Nov 2019 08:35:54 +0000
Received: from XCH-RCD-009.cisco.com (xch-rcd-009.cisco.com [173.37.102.19]) by rcdn-core-11.cisco.com (8.15.2/8.15.2) with ESMTPS id xAI8ZsWb017548 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Mon, 18 Nov 2019 08:35:54 GMT
Received: from xhs-rtp-001.cisco.com (64.101.210.228) by XCH-RCD-009.cisco.com (173.37.102.19) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Mon, 18 Nov 2019 02:35:53 -0600
Received: from xhs-rcd-002.cisco.com (173.37.227.247) by xhs-rtp-001.cisco.com (64.101.210.228) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Mon, 18 Nov 2019 03:35:52 -0500
Received: from NAM05-DM3-obe.outbound.protection.outlook.com (72.163.14.9) by xhs-rcd-002.cisco.com (173.37.227.247) with Microsoft SMTP Server (TLS) id 15.0.1473.3 via Frontend Transport; Mon, 18 Nov 2019 02:35:52 -0600
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=MkZ5NE+sHh0Ts1Za6ObSMCAZNf3U4J+po8/Ch3ejpVqP6xTUjv9JSAcDoM0XiKjKpibS2ptDCPRQqpPwVBrCCEnvvuGYAkh6Jna1Ma+XBijT+cw4kRH2Hlcad+SNHX2WvK/yF/AYF+cui9VpNPDO9GixkX5J6movasEuyF9k+PCbTRCCyIKPVaqLMDPJZkaVPfzDIRM27NyU/NejpOWiUfoMpq2AvEDJFQ/pM+4+9bRxiUfi0vO6MgnFmhJJwIWSPonf3FhqwoLeBIucejhfzn5Czz4zw6qMK2heV8RGUZu/Quz2V5UbJqlTlnH2Tk6ibxI8Fk4A/gSrKFpESg0bNA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=HdCGAxNpAcyjdCBkAjQO+sDu11M6IONJJaYH3FMlQOg=; b=gSWoNFht2jVow0bPb6BwEHQHjEU4tacmFqvT6hRfvxcVBSu/CbGWvognQ8ZeBuTJG1+CIrlrNFHeK6fd+fzoRTObOyk5DMQ63aC6aq9e1HEKjj0EkTe2g9kB3gppCK12/JQLXIgMB52uIpeKaRz8VRE9bqRpGS7l6DAqsy4jitm6RjayBxrcgcWo4ftC3Dx7ZXFhcdCYhvz6brE1e/UwhyLDO8WQicI2Jx/jdpVYvKHNwiiDfK1sURc6RFm+uZbUHQ9DSUmTUbF9W667PJDHtUFH7qfvtXGzqINIBmSVsowWFWwFP7EeciOyS+83b81Lwrtwk5SRZ0ilIrzoIqUE2A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=HdCGAxNpAcyjdCBkAjQO+sDu11M6IONJJaYH3FMlQOg=; b=Y6U35N+LLy7Acr6KfmUr/2MTc/ntQNvUF5BPovddTHZJeK71aGNIcBg7+HxDFGH7VsbpbUvYMmT7fex4w9KIhVWpCOsp4r1CdybfKpG2sowrgSkpDqYSMC9pGQ1CxB5WTQhwHAVQK8KLMCpg1aOZKqeNiiTTHWIQyBh1Hx6Tqi8=
Received: from DM6PR11MB4154.namprd11.prod.outlook.com (20.176.126.215) by DM6PR11MB3483.namprd11.prod.outlook.com (20.176.123.160) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2451.28; Mon, 18 Nov 2019 08:35:51 +0000
Received: from DM6PR11MB4154.namprd11.prod.outlook.com ([fe80::64fd:c810:5c47:243f]) by DM6PR11MB4154.namprd11.prod.outlook.com ([fe80::64fd:c810:5c47:243f%3]) with mapi id 15.20.2451.029; Mon, 18 Nov 2019 08:35:51 +0000
From: "Eric Voit (evoit)" <evoit@cisco.com>
To: "Schönwälder, Jürgen" <J.Schoenwaelder@jacobs-university.de>, Dave Thaler <dthaler=40microsoft.com@dmarc.ietf.org>
CC: "Smith, Ned" <ned.smith@intel.com>, Henk Birkholz <henk.birkholz@sit.fraunhofer.de>, "Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com>, "Oliver, Ian (Nokia - FI/Espoo)" <ian.oliver@nokia-bell-labs.com>, Laurence Lundblade <lgl@island-resort.com>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: [Rats] Call for adoption (after draft rename) for Yang module draft
Thread-Index: AQHVlCwI8/lytau3hU+AhCwtIdg/0ad+jL2AgAAHhQCAAAO1AIAF46wAgACM2YCAAJAzgIAAtdsAgAB9XUCAAqYNAIABt5oQgARYS4CAASp20A==
Date: Mon, 18 Nov 2019 08:35:51 +0000
Message-ID: <DM6PR11MB4154E2C84F09002555231548A14D0@DM6PR11MB4154.namprd11.prod.outlook.com>
References: <147F9159-6055-4E55-ABDC-43DFE3498BF1@island-resort.com> <ce5f8206-74dc-36bb-0093-a93045d5c67f@sit.fraunhofer.de> <0A7E3A4F-8534-4E98-BCB7-1454E07699F4@island-resort.com> <C3AE2645-49C8-4313-BCED-02FEB576B614@cisco.com> <1C8A1884-A37D-45E3-8C11-2FC5A083B245@island-resort.com> <HE1PR0702MB375366C5F7FE5C497C35D73B8F740@HE1PR0702MB3753.eurprd07.prod.outlook.com> <7106C9D3-8ED1-419E-81F8-4CDA799BEDAE@intel.com> <MWHPR21MB07844F61BEFAE03F9E7DD290A3770@MWHPR21MB0784.namprd21.prod.outlook.com> <6E7D64B4-2049-4D0A-ADC5-CA3F0647779B@island-resort.com> <MWHPR21MB07840B6CF7BEE0A11ABE54BFA3700@MWHPR21MB0784.namprd21.prod.outlook.com> <20191117144129.llvg7fsrqgaqtgkn@anna.jacobs.jacobs-university.de>
In-Reply-To: <20191117144129.llvg7fsrqgaqtgkn@anna.jacobs.jacobs-university.de>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=evoit@cisco.com;
x-originating-ip: [108.31.49.36]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: dffee5b5-7d69-41a0-fd8e-08d76c0251f6
x-ms-traffictypediagnostic: DM6PR11MB3483:
x-ms-exchange-transport-forked: True
x-microsoft-antispam-prvs: <DM6PR11MB3483FF63E55C81FE841AD196A14D0@DM6PR11MB3483.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:7219;
x-forefront-prvs: 0225B0D5BC
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(396003)(366004)(346002)(376002)(39860400002)(136003)(199004)(189003)(99286004)(26005)(5660300002)(33656002)(186003)(478600001)(256004)(14444005)(66574012)(966005)(8676002)(486006)(316002)(6506007)(76116006)(476003)(446003)(7696005)(102836004)(11346002)(54906003)(110136005)(81166006)(81156014)(8936002)(9686003)(229853002)(66066001)(4326008)(76176011)(55016002)(6306002)(6116002)(14454004)(6246003)(3846002)(52536014)(71190400001)(71200400001)(66616009)(66556008)(66476007)(66446008)(64756008)(66946007)(2906002)(86362001)(74316002)(305945005)(25786009)(6436002)(7736002); DIR:OUT; SFP:1101; SCL:1; SRVR:DM6PR11MB3483; H:DM6PR11MB4154.namprd11.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 1sqled+m2psN99+NbRQ77Q5Pf79y3OUUqNfcqsdxGgDWYPKoXKmfnWmXI+YT2MSFYvYk3QooS77LWrVD6BB/M8ahldlNZo2HhRgANNYqMSK7GQ/joHKFZsAPeJUaoKP0asbIOj75lbExz+yRnZsJRm81orsi9McABUIIYAAmCiIn2v4vGf6YvaIi2g2rkDzd6zmhF2+0plssH2Yxl7Y4LkHzOqCrLXlSQkzIC2PBwbqF1E5rxezr3q2kVaxa++3evHr/ev6B5n/zyoiiRbGYST7Ad+feKUICfRVN/Czng3GsVbO0v+gExoyJCLhChNA3fDYCKuiKrTgGEH3VWEQW88TI56Ld4qFbeytp+wt1iVhES5hGGaHviSoCsplp2rGVc1nA07S2knpsuwZKY6dvO/qgqWzTm8pKf+VOZ7DTdnEy0JTSKb4wzvMhdFpSfzHp
Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg="SHA1"; boundary="----=_NextPart_000_0561_01D59DC1.3790C0A0"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: dffee5b5-7d69-41a0-fd8e-08d76c0251f6
X-MS-Exchange-CrossTenant-originalarrivaltime: 18 Nov 2019 08:35:51.6150 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 7aONVF3b9vDRN7A5fQ0hEwVYaLtBJ4OEO9+OZcs5w87dgS7zYUZvpcK0fc8Htk/d
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR11MB3483
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.102.19, xch-rcd-009.cisco.com
X-Outbound-Node: rcdn-core-11.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/S7jEY9Xu2GP2j3_GgjqXzQdM4XI>
Subject: Re: [Rats] Call for adoption (after draft rename) for Yang module draft
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 18 Nov 2019 08:36:04 -0000

> From: Schönwälder, Jürgen, November 17, 2019 9:41 AM
> 
> On Fri, Nov 15, 2019 at 07:38:32AM +0000, Dave Thaler wrote:
> >
> > If there is a compelling reason to support a pull-based mechanism, and we
> get consensus that we need it, then great.
> > But so far I haven’t heard one.
> >
> 
> I hope I get the terminology right...
> 
> Research papers I have seen often use a challenge response model where
> the 'verifier' sends a specific challenge that the 'attester' has to answer
> (often with time constraints, minimizing the chance to relay the challenge
> and such things). I think I pointed this out before.
> 
> Perhaps RATS does not need this form of challenge response attestation and
> perhaps RATS is fine with the assumption that the attester somehow knows
> which claims a verifier needs. But then it would be nice to spell this out
> clearly so that people looking for challenge response attestation attestation
> flows know that RATS is not for them.

Commercial products which do challenge/response type remote attestation currently exist.  E.g.: https://www.cisco.com/c/dam/en/us/td/docs/cloud-systems-management/application-policy-infrastructure-controller-enterprise-module/1-5-x/integrity_verification/release-notes_ver_275/Cisco_IV_App_RN_1_5_0_275.pdf 

I am hoping that RATS supports such applications.

Eric

> /js
> 
> --
> Juergen Schoenwaelder           Jacobs University Bremen gGmbH
> Phone: +49 421 200 3587         Campus Ring 1 | 28759 Bremen | Germany
> Fax:   +49 421 200 3103         <https://www.jacobs-university.de/>
> _______________________________________________
> RATS mailing list
> RATS@ietf.org
> https://www.ietf.org/mailman/listinfo/rats