Re: [Rats] New EAT draft -- I-D Action: draft-ietf-rats-eat-01.txt

Laurence Lundblade <lgl@island-resort.com> Sun, 14 July 2019 21:20 UTC

Return-Path: <lgl@island-resort.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E546712018A for <rats@ietfa.amsl.com>; Sun, 14 Jul 2019 14:20:36 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.896
X-Spam-Level:
X-Spam-Status: No, score=-1.896 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id x7orP9IBeFCa for <rats@ietfa.amsl.com>; Sun, 14 Jul 2019 14:20:34 -0700 (PDT)
Received: from p3plsmtpa09-07.prod.phx3.secureserver.net (p3plsmtpa09-07.prod.phx3.secureserver.net [173.201.193.236]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 87B0C12003E for <rats@ietf.org>; Sun, 14 Jul 2019 14:20:34 -0700 (PDT)
Received: from [192.168.0.107] ([67.237.247.208]) by :SMTPAUTH: with ESMTPSA id mlv6h6jgHLZaamlv7hDcHM; Sun, 14 Jul 2019 14:20:33 -0700
From: Laurence Lundblade <lgl@island-resort.com>
Message-Id: <F9CB27EC-898E-4C74-AF02-CA0CF8886A97@island-resort.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_D36477C9-885F-47A1-9B85-1E2D4560D6D6"
Mime-Version: 1.0 (Mac OS X Mail 11.5 \(3445.9.1\))
Date: Sun, 14 Jul 2019 14:20:32 -0700
In-Reply-To: <DB7PR08MB364208D3707F7D8558AFEE88EFF60@DB7PR08MB3642.eurprd08.prod.outlook.com>
Cc: "rats@ietf.org" <rats@ietf.org>
To: Simon Frost <Simon.Frost@arm.com>
References: <156222457028.12217.255889850248264885@ietfa.amsl.com> <1319915C-304A-4E51-ACC9-C99792949CD1@island-resort.com> <DB7PR08MB364208D3707F7D8558AFEE88EFF60@DB7PR08MB3642.eurprd08.prod.outlook.com>
X-Mailer: Apple Mail (2.3445.9.1)
X-CMAE-Envelope: MS4wfOAHu1QHRUTfahAMSsZpECPEFTZMRXarcAE/QYCoKyWwHcUV3C/5SQxmw7xOUYqZyMFHjY0jljvn/RYTbjJFJAeSkEcnL1Uf/FeUoP4YZ7OTnD9B5OT3 Ah1smtL1TudD3tSm0UjDqBc9pbJ3Dt3PoJkTafmip2raKMibs1Mb/s/pg2jOBOuBSUV6TASXu/0NN/wxYEDyCTq5BjX2cNcmafo=
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/dAV6DXUoV4JzOYCtGTE4C5isBvI>
Subject: Re: [Rats] New EAT draft -- I-D Action: draft-ietf-rats-eat-01.txt
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 14 Jul 2019 21:20:37 -0000

I’ve moved the EAT repository to ietf-rats-wg <https://github.com/ietf-rats-wg>. 

Please make comments as GitHub Issues here <https://github.com/ietf-rats-wg/eat/issues>.

LL



> On Jul 8, 2019, at 4:48 AM, Simon Frost <Simon.Frost@arm.com> wrote:
> 
> This was done in the EAT GitHub, not the RATs GitHub. I will see about changing the owner ship next.
> How do you want comments: as issues in the EAT GitHub (unless you’re intending to move to RATS) or on the mailing list?
>  
> Thanks
> Simon
>  
> From: Laurence Lundblade <lgl@island-resort.com <mailto:lgl@island-resort.com>> 
> Sent: 05 July 2019 19:51
> To: rats@ietf.org <mailto:rats@ietf.org>
> Subject: [Rats] New EAT draft -- I-D Action: draft-ietf-rats-eat-01.txt
>  
> Here’s a new EAT draft.
>  
> It makes an EAT either a CWT or JWT, not something of it’s own as this was the consensus. Little less sure about consensus about JWT, but we can discuss that.
>  
> It separates the information model from the data model. The information model is described using CDDL. I used a CDDL group for each claim. Hopefully this is a good way to do it. In later sections the the extra details needed for CBOR and JSON syntax are given. I’m not so much after conversion between them. What is important that they both be able to express the same claims so you don’t have a situation where “you have to use CBOR if you want claim XXX” (or vice versa).
>  
> I have not added any new claims, but I did restructure those that are there. Seemed best to agree on the set up / approach before adding new claims.
>  
> There is nothing new about the CWT and JWT registries, such as requiring more review on the assumption they are OK as is, and we’ll address the claims quality through profiles.
>  
> Many of Ben’s private comments to me were intrinsically addressed. The one that wasn’t, whether 128 bits is enough for a UEID, was not, so I filed an issue for it.
>  
> This was done in the EAT GitHub, not the RATs GitHub. I will see about changing the owner ship next.
>  
> LL
>  
> 
> 
> Begin forwarded message:
>  
> From: internet-drafts@ietf.org <mailto:internet-drafts@ietf.org>
> Subject: [Rats] I-D Action: draft-ietf-rats-eat-01.txt
> Date: July 4, 2019 at 12:16:10 AM PDT
> To: <i-d-announce@ietf.org <mailto:i-d-announce@ietf.org>>
> Cc: rats@ietf.org <mailto:rats@ietf.org>
> Reply-To: rats@ietf.org <mailto:rats@ietf.org>
>  
> 
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This draft is a work item of the Remote ATtestation ProcedureS WG of the IETF.
> 
>        Title           : The Entity Attestation Token (EAT)
>        Authors         : Giridhar Mandyam
>                          Laurence Lundblade
>                          Miguel Ballesteros
>                          Jeremy O'Donoghue
>                 Filename        : draft-ietf-rats-eat-01.txt
>                 Pages           : 28
>                 Date            : 2019-07-04
> 
> Abstract:
>   An Entity Attestation Token (EAT) provides a signed (attested) set of
>   claims that describe state and characteristics of an entity,
>   typically a device like a phone or an IoT device.  These claims are
>   used by a relying party to determine how much it wishes to trust the
>   entity.
> 
>   An EAT is either a CWT or JWT with some attestation-oriented claims.
>   To a large degree, all this document does is extend CWT and JWT.
> 
> Contributing
> 
>   TBD
> 
> 
> The IETF datatracker status page for this draft is:
> https://datatracker.ietf.org/doc/draft-ietf-rats-eat/ <https://datatracker.ietf.org/doc/draft-ietf-rats-eat/>
> 
> There are also htmlized versions available at:
> https://tools.ietf.org/html/draft-ietf-rats-eat-01 <https://tools.ietf.org/html/draft-ietf-rats-eat-01>
> https://datatracker.ietf.org/doc/html/draft-ietf-rats-eat-01 <https://datatracker.ietf.org/doc/html/draft-ietf-rats-eat-01>
> 
> A diff from the previous version is available at:
> https://www.ietf.org/rfcdiff?url2=draft-ietf-rats-eat-01 <https://www.ietf.org/rfcdiff?url2=draft-ietf-rats-eat-01>
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org <http://tools.ietf.org/>.
> 
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/ <ftp://ftp.ietf.org/internet-drafts/>
> 
> _______________________________________________
> RATS mailing list
> RATS@ietf.org <mailto:RATS@ietf.org>
> https://www.ietf.org/mailman/listinfo/rats <https://www.ietf.org/mailman/listinfo/rats>
>  
> IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you. _______________________________________________
> RATS mailing list
> RATS@ietf.org <mailto:RATS@ietf.org>
> https://www.ietf.org/mailman/listinfo/rats <https://www.ietf.org/mailman/listinfo/rats>