Re: [Rats] [sacm] CoSWID and EAT and CWT

Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com> Thu, 21 November 2019 02:11 UTC

Return-Path: <kathleen.moriarty.ietf@gmail.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 728E1120975; Wed, 20 Nov 2019 18:11:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.997
X-Spam-Level:
X-Spam-Status: No, score=-0.997 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, FREEMAIL_REPLY=1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YFx_Fzf-FPe6; Wed, 20 Nov 2019 18:11:26 -0800 (PST)
Received: from mail-oi1-x235.google.com (mail-oi1-x235.google.com [IPv6:2607:f8b0:4864:20::235]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 17B66120991; Wed, 20 Nov 2019 18:11:26 -0800 (PST)
Received: by mail-oi1-x235.google.com with SMTP id n14so1720737oie.13; Wed, 20 Nov 2019 18:11:26 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=THCuxbnIoTirOD842I/K5zD2I7J654zGJTSzfQKwgbI=; b=FFhXqzUMled5U7M4OI/N34htaQ4Fzn5BMT+VTSdGCit43EvxFGyG+H74aPAAAvnT+t 2hstw2PO2MAU8sKccceiePZuRCqDA7H7XA8fEq+zpeTw4KSZ0rHUK93RgAbmq/OUdmrG ekmiAHG0YhBxqa0/p5ijfwffRMFESZ/ZniCOQI9M/GKLTty7CpzIwPpy7jUAw9UeE9G/ LrAEv7AY1ZLHJb+T3Cu4Gx0SS1y3PCjHOMiWZ+4VrQ3U+pbmW3cu3SXdveD9mVJzQGVr TlyLheipYkNiJ20Y8NVCEPCBpPtQxjkBLJTHQZry5sJTPCPIgVsCtA7AhRjMCXWHH5vU TySQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=THCuxbnIoTirOD842I/K5zD2I7J654zGJTSzfQKwgbI=; b=IxNoq1PsryK8ylb/Tqt9Avg6Yx70S7V1C7qBhVEkdU7poDskN1DuA/CqBjc6IoYIaW DVcEpRDIh8oOffvgsrRZHzDAkXNeEAHFJlYhmRiTThekklPU28SdO6A/4qt0QyIh2Sfx l6GtRk8kolqVZYk6Sewrt7fCvqtbSIHFpMlsThJRR1sHma5WGNcYDN/hiCxU3SZZO8ka xIGD1BeUZVTYJaZki6Pnp0bhAjhDVjx2nEdiP7P7z9oE8Nw2QpZRTY2dzTXJAmiBpyHQ zdRRxKLgVTp1ml2tQusDEhF8Clajf8V18ZLuk3rMIhtrW4364PDTVFQ0yaS6hayfccsY otSg==
X-Gm-Message-State: APjAAAXdTsvK7sQKVT22UTxNwfowVKPNVlTWdpYnXSuWJ43ZdKUxNaNJ YbHh5tgEoW3kbrfFldK9f5ynCIuLC+HEECXLVm2P7gdG
X-Google-Smtp-Source: APXvYqxiVammz0VtyYWNrkK2AX0Vm2/4x18YX+jCIEPGVrItgMjuVwwgR5yPSiWjlyDWa1NiwFaKIUXAMrNotFupMTg=
X-Received: by 2002:aca:d509:: with SMTP id m9mr5376308oig.164.1574302285361; Wed, 20 Nov 2019 18:11:25 -0800 (PST)
MIME-Version: 1.0
References: <2A12D8A3-722A-44D1-8011-218C89C8B50B@island-resort.com> <CAN40gStq_v6KEe_CiGFQSUTWMjLf4RC-1HLaQzgoCN0gcixWEg@mail.gmail.com>
In-Reply-To: <CAN40gStq_v6KEe_CiGFQSUTWMjLf4RC-1HLaQzgoCN0gcixWEg@mail.gmail.com>
From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
Date: Wed, 20 Nov 2019 21:10:49 -0500
Message-ID: <CAHbuEH7v8WeO7-w8LTjVwCzRNfnEyYRgiDFumXpKNHSN5QaaKA@mail.gmail.com>
To: Ira McDonald <blueroofmusic@gmail.com>
Cc: Laurence Lundblade <lgl@island-resort.com>, rats@ietf.org, sacm <sacm@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000007cf6cf0597d1d06a"
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/VUbmVE6b4n8R8XDL9CNx62Oocms>
Subject: Re: [Rats] [sacm] CoSWID and EAT and CWT
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Nov 2019 02:11:30 -0000

Great, thanks Laurence.  If that's easier I think having the CoSWID in one
claim should be ok and would have the same result as the suggestion I
made.  Changing the CoSWID format is a big enough process that it shouldn't
happen very often.

Best regards,
Kathleen

On Wed, Nov 20, 2019 at 8:00 PM Ira McDonald <blueroofmusic@gmail.com>
wrote:

> Hi Laurence,
>
> That seems like a good suggestion for a simple way to integrate CoSWID
> content
> into EAT.
>
> Cheers,
> - Ira
>
> Ira McDonald (Musician / Software Architect)
> Co-Chair - TCG Trusted Mobility Solutions WG
> Co-Chair - TCG Metadata Access Protocol SG
> Chair - Linux Foundation Open Printing WG
> Secretary - IEEE-ISTO Printer Working Group
> Co-Chair - IEEE-ISTO PWG Internet Printing Protocol WG
> IETF Designated Expert - IPP & Printer MIB
> Blue Roof Music / High North Inc
> http://sites.google.com/site/blueroofmusic
> http://sites.google.com/site/highnorthinc
> mailto: blueroofmusic@gmail.com
> PO Box 221  Grand Marais, MI 49839  906-494-2434
>
>
>
> On Wed, Nov 20, 2019 at 7:35 PM Laurence Lundblade <lgl@island-resort.com>
> wrote:
>
>> Hi,
>>
>> I’m not on the SACM list, but did look at the archive. Hopefully I’m not
>> out of sync.
>>
>> My thought is to register one claim for CWT that is an entire CoSWID (in
>> CDDL the concise-swid-tag).
>>
>> That way CoSWID can grow and develop on its own without lots of adds and
>> subtracts to the CWT registry. It has its own IANA registry with its own
>> experts and such. Seems like the coupling / factoring is about right.
>>
>> This would also be the way I’d like to have it in EAT attestation. We’ve
>> done a mini version of this with the location claim
>> <https://tools.ietf.org/html/draft-ietf-rats-eat-01#section-3.8>.
>>
>> Then if you just want to sign a CoSWID CWT style, this works pretty well
>> too. It has a slight overhead compared to having all the CoSWID data items
>> as direct CWT claims in that it will have an additional map layer, but that
>> is only about three bytes.
>>
>> LL
>>
>> _______________________________________________
>> RATS mailing list
>> RATS@ietf.org
>> https://www.ietf.org/mailman/listinfo/rats
>>
> _______________________________________________
> sacm mailing list
> sacm@ietf.org
> https://www.ietf.org/mailman/listinfo/sacm
>


-- 

Best regards,
Kathleen