[Rats] Comments on draft-birkholz-rats-architecture-01

Dave Thaler <dthaler@microsoft.com> Wed, 10 July 2019 20:40 UTC

Return-Path: <dthaler@microsoft.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B799E120147 for <rats@ietfa.amsl.com>; Wed, 10 Jul 2019 13:40:36 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 95gzvawyvi7B for <rats@ietfa.amsl.com>; Wed, 10 Jul 2019 13:40:34 -0700 (PDT)
Received: from NAM02-SN1-obe.outbound.protection.outlook.com (mail-eopbgr770115.outbound.protection.outlook.com [40.107.77.115]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4E4CC12004A for <rats@ietf.org>; Wed, 10 Jul 2019 13:40:34 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Y8xBTjmD0H8rWAnETJk1+pjLd4fErrN43amYGoF1wvIFCFe8W5DEiMcTpS2X2WG6EtLPPh7ek83pD+jNsX/hmkX7jnxYkchhwAelQ7fadUUIIjMNr9pf3StRpMDS98OZ6ePtmM4p8tL5fufi1QHnGut+dvub/k8R7GpJ8PY9eLOdX70h5ZcwwNu8mpW0f/c8D73u2rKZ2aF01pQBtDMgMW2vRk3xzZJxpCeC6kHqKdfRjatJhM1KybXNuvc1iIKLMqQS7Poiv1o8SqUBmSS9vzvD7hAVxjF7kb0/jWGAfQGd7z9le7+GBVWwlxxOi+nxNiQ9PtsYlzbKLuJ4ANoyiA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Azv9BMnMZSSpU//UKljLVhOWCYdlZFXsigxkCz0l4RY=; b=YLOtXIqsN0Se0XvRbUNbiAdchBVaxvDo73WauZi3jQomAU8lpssrQx2h44F0wH//iWf4ahdCGJCohKa6WdCWPWQw8SfnlsPGrj7vH5ycgEr/9c1JRY2+VDpXVJCSX71ZJacUgdt5xZbKNvSkvW8rAuwNG7ggAyUMqpZgbFJlPKkIf3qZrtwY4WYPRNFzDT/ZiVwTopZXC3zip/UjZWZkksx96wnh/jcGId+CjmU5GRQ3a9sjUokVCIDFq+1Qk8kPgWoLF0E8kSnfKZZzVxasbT0O6bkoEoHKSuyZkInwghXmOZpFyeEBIJb6ec1ujIOI878mgvgp4KbX5vvRzGSllA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1;spf=pass smtp.mailfrom=microsoft.com;dmarc=pass action=none header.from=microsoft.com;dkim=pass header.d=microsoft.com;arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Azv9BMnMZSSpU//UKljLVhOWCYdlZFXsigxkCz0l4RY=; b=otMMro8NQD3gGB3smDlVb3IF1YOamhoysEnQaq1FYvcqpfHdPhSjao2XzchvbHkVGrLPPah2KJa/WRaptlbVrDiqGRo7jiVNScLOt3fEiMrz2sNvhnDb40Bt8h0SfQt899bIcFMsH/zq8iGe/CBwvF6zQqtlQ4o1o9AuLVOJ0lw=
Received: from MWHPR21MB0784.namprd21.prod.outlook.com (10.173.51.150) by MWHPR21MB0702.namprd21.prod.outlook.com (10.175.142.12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2094.3; Wed, 10 Jul 2019 20:40:32 +0000
Received: from MWHPR21MB0784.namprd21.prod.outlook.com ([fe80::69c0:8cb:908c:f221]) by MWHPR21MB0784.namprd21.prod.outlook.com ([fe80::69c0:8cb:908c:f221%8]) with mapi id 15.20.2094.001; Wed, 10 Jul 2019 20:40:32 +0000
From: Dave Thaler <dthaler@microsoft.com>
To: "rats@ietf.org" <rats@ietf.org>
Thread-Topic: Comments on draft-birkholz-rats-architecture-01
Thread-Index: AdU3X5HLtovH3btCRq+LyWrFOxmTwQ==
Date: Wed, 10 Jul 2019 20:40:32 +0000
Message-ID: <MWHPR21MB07847AA6113D9939719B0FE0A3F00@MWHPR21MB0784.namprd21.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=True; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Owner=dthaler@ntdev.microsoft.com; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2019-07-10T20:40:31.0146141Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=General; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Application=Microsoft Azure Information Protection; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=a6983942-e58d-46e7-b3e2-270b6043c97b; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Extended_MSFT_Method=Automatic
authentication-results: spf=none (sender IP is ) smtp.mailfrom=dthaler@microsoft.com;
x-originating-ip: [2001:4898:80e8:a:4d4e:4c8b:b9bd:91c1]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 10fa1cf0-c1e2-4b55-6720-08d70576da7f
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(5600148)(711020)(4605104)(1401327)(4618075)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(2017052603328)(7193020); SRVR:MWHPR21MB0702;
x-ms-traffictypediagnostic: MWHPR21MB0702:
x-ms-exchange-purlcount: 3
x-microsoft-antispam-prvs: <MWHPR21MB0702F43E97DE5C0C1D07F83EA3F00@MWHPR21MB0702.namprd21.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8273;
x-forefront-prvs: 0094E3478A
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(4636009)(366004)(136003)(396003)(346002)(39860400002)(376002)(199004)(189003)(86362001)(81166006)(71190400001)(1730700003)(486006)(22452003)(256004)(966005)(52536014)(7736002)(6506007)(316002)(6916009)(8990500004)(14454004)(71200400001)(8936002)(8676002)(2501003)(2906002)(4744005)(81156014)(53936002)(76116006)(9686003)(6436002)(606006)(68736007)(25786009)(102836004)(476003)(7696005)(5660300002)(478600001)(46003)(33656002)(66556008)(66476007)(64756008)(236005)(6306002)(66446008)(5640700003)(66946007)(55016002)(74316002)(54896002)(2351001)(99286004)(10090500001)(186003)(10290500003)(6116002)(790700001); DIR:OUT; SFP:1102; SCL:1; SRVR:MWHPR21MB0702; H:MWHPR21MB0784.namprd21.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: e9lZDxpkQH59FAUADQAuBNp7L0jVjSTkpmyixwoF+VvAwBiQNgAP5E4VTzMIoiH9zlH9BfNBwZG8cRoLmdxsgDkukglBs0Oz95W3ZczMmXCfPgP0tVzweejAhS0qaVZ7uST3KMobhMad8skQ7bL7I/kCUTWUvR/3Kj8zu9KsMHPReQFR2i/A9+m77ICdOpW0mD6u1I0yOe33zRphVIraKPzvbZcEHDhkiU0QV8WrtCRQmHVbxK1E77hCl451EQLgv7F0rLovorxOuf/WNz4WqDzVSHrFRFiQTKLElhhgL4U3XXL0c4McyhJB4Cn7AePOIVpQLa0YQ3+GDHLBdnRgPuLN8T227r4fv7BF7zq4YX3iLLp/y+7Q/i5LQjveG1Ih3/69D1eHb973BH91nZhhxKlKg++QVUqSHmz57EB18js=
Content-Type: multipart/alternative; boundary="_000_MWHPR21MB07847AA6113D9939719B0FE0A3F00MWHPR21MB0784namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 10fa1cf0-c1e2-4b55-6720-08d70576da7f
X-MS-Exchange-CrossTenant-originalarrivaltime: 10 Jul 2019 20:40:32.5877 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: dthaler@ntdev.microsoft.com
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MWHPR21MB0702
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/BxHBNqQBktRsI1n5txoCzZD0bME>
Subject: [Rats] Comments on draft-birkholz-rats-architecture-01
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Jul 2019 20:40:37 -0000

I reviewed the latest draft posted and added lots of comments into the doc, visible at
https://www.microsoft.com/en-us/research/uploads/prod/2017/05/draft-birkholz-rats-architecture-01.pdf
Feel free to copy any into email if an email discussion is desired.

I still find many parts of the document confusing, as my comments elaborate on.

Dave