Re: [Rats] Call for Adoption: EAT draft

"Eric Voit (evoit)" <evoit@cisco.com> Wed, 22 May 2019 17:53 UTC

Return-Path: <evoit@cisco.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C60B2120251 for <rats@ietfa.amsl.com>; Wed, 22 May 2019 10:53:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.499
X-Spam-Level:
X-Spam-Status: No, score=-14.499 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=EyUtSR1j; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=sQvGqRE9
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NXTFsWjAFJmE for <rats@ietfa.amsl.com>; Wed, 22 May 2019 10:53:09 -0700 (PDT)
Received: from rcdn-iport-2.cisco.com (rcdn-iport-2.cisco.com [173.37.86.73]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5CE491200D8 for <rats@ietf.org>; Wed, 22 May 2019 10:53:09 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=8486; q=dns/txt; s=iport; t=1558547589; x=1559757189; h=from:to:subject:date:message-id:references:in-reply-to: mime-version; bh=iqQMLpmB6DP5hfnkKZr1Da+RGvFwQFWbMznlbdVkG14=; b=EyUtSR1jH38VEPMuNM/Q6FdAcde2kja3/NPtdpooIneWlB3O6zI3DNe1 LrKXPfTT1GClHv+Vvlk8V7f0fCo0HO57diWA5YwTgk9WEPWRXHSrlTwwu 8aD9DoQJ6TRcXgJnYHmq1RE/WgwFgWsSIvM8E3IVehBazYKHzJsoZ1Cbm 0=;
IronPort-PHdr: 9a23:950BaxBgv9BDd+kFWpL8UyQJPHJ1sqjoPgMT9pssgq5PdaLm5Zn5IUjD/qg93kTRU9Dd7PRJw6rNvqbsVHZIwK7JsWtKMfkuHwQAld1QmgUhBMCfDkiuIeDtbjASF8VZX1gj9Ha+YgBY
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0BIAAAgjOVc/5FdJa1lHAEBAQQBAQcEAQGBUQcBAQsBgQ4vUANpVSAECygKhAmDRwOEUooigleSWYRQgS6BJANUCQEBAQwBASMKAgEBgUuCdQIXghojNAkOAQMBAQQBAQIBBG0cDIVKAQEBBBILBgoTAQE4DwIBCBEEAQErAgICMB0IAgQBEggagwGBHU0DHQECDJ0XAoE1iF9xgS+CeQEBBYE2BAxBgn4YgXUaAwaBNAGLUBeBQD+BEUaCTD6CYQIDAYFfFRaCXTKCJo1/hF6IH405CQKCDYYwhnuFdpYyjF2Gd45eAgQCBAUCDgEBBYFPOIFXcBWDJ4IPg2+FFIU/coEpjCYBgSABAQ
X-IronPort-AV: E=Sophos;i="5.60,500,1549929600"; d="scan'208,217";a="566259812"
Received: from rcdn-core-9.cisco.com ([173.37.93.145]) by rcdn-iport-2.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 22 May 2019 17:53:08 +0000
Received: from XCH-ALN-005.cisco.com (xch-aln-005.cisco.com [173.36.7.15]) by rcdn-core-9.cisco.com (8.15.2/8.15.2) with ESMTPS id x4MHr8mj024309 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 22 May 2019 17:53:08 GMT
Received: from xhs-rcd-002.cisco.com (173.37.227.247) by XCH-ALN-005.cisco.com (173.36.7.15) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Wed, 22 May 2019 12:53:07 -0500
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by xhs-rcd-002.cisco.com (173.37.227.247) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Wed, 22 May 2019 12:53:07 -0500
Received: from NAM03-CO1-obe.outbound.protection.outlook.com (64.101.32.56) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1473.3 via Frontend Transport; Wed, 22 May 2019 13:53:06 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=iqQMLpmB6DP5hfnkKZr1Da+RGvFwQFWbMznlbdVkG14=; b=sQvGqRE9kOk68BsltjRqesAg2U16SZ9BbiUCSbMAJUZ2kC2xM9jqcG7gqL3/UMnx8uuSTi4fjxovpj8MB+Q9ogJmuwxmGTqDk9Ps4pteMZeeZmxBxiULoNpmBl3nhNl0DYY4zoY1Zw2NU5easyFM5UpBBy+T88RpxA5okvAezB0=
Received: from DM6PR11MB4089.namprd11.prod.outlook.com (20.176.126.30) by DM6PR11MB3852.namprd11.prod.outlook.com (20.179.17.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1922.16; Wed, 22 May 2019 17:53:05 +0000
Received: from DM6PR11MB4089.namprd11.prod.outlook.com ([fe80::d014:d7a3:270:e5a9]) by DM6PR11MB4089.namprd11.prod.outlook.com ([fe80::d014:d7a3:270:e5a9%3]) with mapi id 15.20.1900.020; Wed, 22 May 2019 17:53:05 +0000
From: "Eric Voit (evoit)" <evoit@cisco.com>
To: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: [Rats] Call for Adoption: EAT draft
Thread-Index: AQHVB0JFcFAs6WTeOkGyPcUokje8h6Z3eNuA
Date: Wed, 22 May 2019 17:53:05 +0000
Message-ID: <DM6PR11MB408991CBF9B50672E12A8F61A1000@DM6PR11MB4089.namprd11.prod.outlook.com>
References: <CAHbuEH6Mdwp+neWbcecA-pMYZoXKiNda2A0EnMh-8WX=W9_edA@mail.gmail.com>
In-Reply-To: <CAHbuEH6Mdwp+neWbcecA-pMYZoXKiNda2A0EnMh-8WX=W9_edA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=evoit@cisco.com;
x-originating-ip: [173.38.117.94]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: a79f3c0d-30b9-43a3-44ab-08d6dede57c8
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600141)(711020)(4605104)(2017052603328)(7193020); SRVR:DM6PR11MB3852;
x-ms-traffictypediagnostic: DM6PR11MB3852:
x-ms-exchange-purlcount: 4
x-microsoft-antispam-prvs: <DM6PR11MB38524AC7ADF589678F90C415A1000@DM6PR11MB3852.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:2201;
x-forefront-prvs: 0045236D47
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(366004)(136003)(346002)(396003)(376002)(39860400002)(199004)(189003)(73956011)(66946007)(25786009)(2906002)(99286004)(7736002)(66476007)(66556008)(64756008)(66446008)(66066001)(81166006)(81156014)(8676002)(66574012)(316002)(76116006)(446003)(186003)(8936002)(6436002)(102836004)(53546011)(26005)(52536014)(6506007)(53936002)(6246003)(68736007)(33656002)(229853002)(110136005)(478600001)(476003)(5660300002)(7696005)(3846002)(606006)(486006)(790700001)(6116002)(9686003)(74316002)(86362001)(76176011)(966005)(2501003)(256004)(14444005)(236005)(71190400001)(14454004)(71200400001)(6306002)(11346002)(54896002)(55016002); DIR:OUT; SFP:1101; SCL:1; SRVR:DM6PR11MB3852; H:DM6PR11MB4089.namprd11.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: TYlrnICv/DF49ezgvLuDeunTivikRerXvvGUOjAnF1t8fV+q4KcKtnPiByDrXxbmVuJNyVTC7b666s6xL7+yZOQaV76R4DBKToYmUWITE41yioKyjptBAUiK6rhxcKdDBgksXRCJJ59G5HGTZDBW2TDYmfFd74QRm8VhFNCRRA7Pd+D0DWxWZmNa9HeDcWhISxz+NhvZXpETV5PSbonZhxvR30issZ7k+JoC2JsqIMDt+Dc34vHXuRtHFvhnjIZq2LhdzEsvZRHa/uQOdoHUNt+b+T/yKpqkrs02Zm0Vk4y4oEbBxxi4vgaUU7pGNQkiLNtgHwMUiWFq7skhdNXQojpYc2xNutybi2JP2XIZqw8+giLl+3eFnfS9RG6DgmQdKE0vIC3OH1/rEfDFh3fXflqOF0iTTqBguaV+vHFbozw=
Content-Type: multipart/alternative; boundary="_000_DM6PR11MB408991CBF9B50672E12A8F61A1000DM6PR11MB4089namp_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: a79f3c0d-30b9-43a3-44ab-08d6dede57c8
X-MS-Exchange-CrossTenant-originalarrivaltime: 22 May 2019 17:53:05.4403 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR11MB3852
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.15, xch-aln-005.cisco.com
X-Outbound-Node: rcdn-core-9.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/XCJ5LDs__0SsVOJ_ogItQ_SVCtg>
Subject: Re: [Rats] Call for Adoption: EAT draft
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 22 May 2019 17:53:12 -0000

I like the draft, but there is one thing I would like to hear from the authors before answering the poll.

This YANG model is exposed by software on a networking device like a router.  The router can examine information from local cryptoprocessors such as a TPM.

In looking at the proposed YANG model (draft-birkholz-rats-basic-yang-module), the tpms-attest-result structure from this YANG model can contain the raw result from a TPM.  This to me seems to be a binary blob which could also carry CBOR encoded EAT claims.  Do you agree with this assessment?

Eric

From: RATS <rats-bounces@ietf.org> On Behalf Of Kathleen Moriarty
Sent: Friday, May 10, 2019 11:07 AM
To: rats@ietf.org
Subject: [Rats] Call for Adoption: EAT draft

Greetings!

At IETF 104, a poll was taken to determine interest in the RATS WG adopting:

The Entity Attestation Token (EAT)
https://datatracker.ietf.org/doc/draft-mandyam-rats-eat/

This begins a 2 week period to determine interest in adopting this draft as a working group item.  The poll will close on May 24th EOD PDT.

Minutes from IETF 104:
https://datatracker.ietf.org/doc/minutes-104-rats/
--

Best regards,
Kathleen