Re: [Rats] Epochs

Laurence Lundblade <lgl@island-resort.com> Thu, 29 September 2022 16:47 UTC

Return-Path: <lgl@island-resort.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AB6CDC14F748 for <rats@ietfa.amsl.com>; Thu, 29 Sep 2022 09:47:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xZJRp8wC-mHe for <rats@ietfa.amsl.com>; Thu, 29 Sep 2022 09:47:30 -0700 (PDT)
Received: from NAM10-BN7-obe.outbound.protection.outlook.com (mail-bn7nam10on2131.outbound.protection.outlook.com [40.107.92.131]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 25243C14F733 for <rats@ietf.org>; Thu, 29 Sep 2022 09:47:29 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Ew+dyP9ptIqFnehCQsb8GYiZC5MYV6AdsYj7yrRLrSXd26gTNSbVgAdPVnSGAdxtnflE+E9KSgCt8YV/AVuHOk/ByQfXGAS2nH2KSg8zU8tAAs/AWaUgbjtDdezt3OmhDkjJUcdosqz9mevFLKpgx2Qc2js8mJlCsCEkuANxksMyG9a5G1FxqgmiRqGXnD4/lnh97+dbHyeVaNw/iIaxAOScY1twiOuo+kguL6CXJxKi6ZB6ZoJK4g/8Cl7GnY4NX/hsOdHSyiOF9gVDaiJiPOhlBiHITL4OYIYM/jWAuYURsbV0LZPQ/GB+AQnUaY0pPrLTHrdaM+2VH6IheNPY/Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Hcv1hUnPcxIbo5m50bDWCG8oaC2+zYeR02JuKvtAzjc=; b=ajuy/+y9XG2wvt+eDkF4c9I6B3B5jD4gVjxxs5ilDqWFMZzl6lWvG2LmYd0o6Ia/uDwFFSZfykwSstemuryzBD+oQ3MxA9WIj47ay9vjcvBPgOEGCjYBnA20cAbOb7wFPFZxTECpW0ocq3QmqKkluNZWUO42aV0BdZm3NWlrBOUBJ3nAMZJT21utzgx2/XesSBYw/0CVkbJgXGpVQmriEokhGIOv8MIhJqdV+QN7tTs5Y+o2eCLL2zKZMtMwqsyHvFvt3Td2c9gr1QYKvmStqDShckEkFZdGMGyLBfosHdNUoCnD4AkZINtVJY+lZibrhHM4csPDH60VVX1yyHKcAg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=island-resort.com; dmarc=pass action=none header.from=island-resort.com; dkim=pass header.d=island-resort.com; arc=none
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=island-resort.com;
Received: from PH7PR22MB3092.namprd22.prod.outlook.com (2603:10b6:510:13b::8) by DM6PR22MB1932.namprd22.prod.outlook.com (2603:10b6:5:255::20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5654.25; Thu, 29 Sep 2022 16:47:25 +0000
Received: from PH7PR22MB3092.namprd22.prod.outlook.com ([fe80::20fc:7118:33f4:ffaf]) by PH7PR22MB3092.namprd22.prod.outlook.com ([fe80::20fc:7118:33f4:ffaf%5]) with mapi id 15.20.5676.020; Thu, 29 Sep 2022 16:47:24 +0000
From: Laurence Lundblade <lgl@island-resort.com>
Message-Id: <C7E00B84-4CA1-4BAA-8E2E-446B57F6EAE7@island-resort.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_8179761B-F955-4093-A4AC-80E93F84A32B"
Date: Thu, 29 Sep 2022 09:47:22 -0700
In-Reply-To: <26847.1664454112@dooku>
Cc: Hannes Tschofenig <Hannes.Tschofenig@arm.com>, "rats@ietf.org" <rats@ietf.org>
To: Michael Richardson <mcr+ietf@sandelman.ca>
References: <DBBPR08MB5915446C7545943D39EC9607FA579@DBBPR08MB5915.eurprd08.prod.outlook.com> <26847.1664454112@dooku>
X-Mailer: Apple Mail (2.3608.120.23.2.4)
X-ClientProxiedBy: SJ0PR13CA0139.namprd13.prod.outlook.com (2603:10b6:a03:2c6::24) To PH7PR22MB3092.namprd22.prod.outlook.com (2603:10b6:510:13b::8)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: PH7PR22MB3092:EE_|DM6PR22MB1932:EE_
X-MS-Office365-Filtering-Correlation-Id: c88fcf7b-35e6-4832-14a1-08daa23a493f
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH7PR22MB3092.namprd22.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(396003)(136003)(346002)(366004)(39830400003)(376002)(451199015)(41300700001)(186003)(2616005)(2906002)(38100700002)(54906003)(86362001)(36756003)(33656002)(4326008)(38350700002)(478600001)(316002)(66946007)(66556008)(66476007)(52116002)(33964004)(6512007)(26005)(8676002)(5660300002)(6486002)(6506007)(53546011)(8936002)(45980500001); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: island-resort.com
X-MS-Exchange-CrossTenant-Network-Message-Id: c88fcf7b-35e6-4832-14a1-08daa23a493f
X-MS-Exchange-CrossTenant-AuthSource: PH7PR22MB3092.namprd22.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 29 Sep 2022 16:47:24.9051 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: ad4b5b91-a549-4435-8c42-a30bf94d14a8
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: B48GYCzj+KtyFm6Jtz8mosMHrffWIDJoEwrIG2JQ+FfdgPfOncriozr9S6S2hU4dz4P51SiCsq1uYxBXSJv0Ww==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR22MB1932
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/eMkFrzsoHn0_f_g4YGvdty6T2NQ>
Subject: Re: [Rats] Epochs
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 29 Sep 2022 16:47:34 -0000


> On Sep 29, 2022, at 5:21 AM, Michael Richardson <mcr+ietf@sandelman.ca> wrote:
> 
> Hannes Tschofenig <Hannes.Tschofenig@arm.com <mailto:Hannes.Tschofenig@arm.com>> wrote:
>>  1.  Would you expect that all solutions support all three freshness
>> mechanisms, namely epoch ids, timestamps and nonces?
> 
> No, certainly not.
> A specific deployment (like an EAT profile) would support one.

Yes

> 
> Maybe a mechanism (like EAT...) could be adapted to all three, but that
> wouldn't be required.  I am unclear if TEEP needs to support multiple
> mechanisms. (i.e. I'm ignorant)

It’s a good idea to define a claim for epochs in EAT, but we don’t want to do it in the EAT document only because EAT is big enough as is and we want to get it done. Seems like a separate little draft would be good.

LL