[Rats] 答复: Call for adoption (after draft rename) for Yang module draft

"Xialiang (Frank, Network Standard & Patent Dept)" <frank.xialiang@huawei.com> Fri, 15 November 2019 00:44 UTC

Return-Path: <frank.xialiang@huawei.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5CCC812007A for <rats@ietfa.amsl.com>; Thu, 14 Nov 2019 16:44:15 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2hRSXq662n10 for <rats@ietfa.amsl.com>; Thu, 14 Nov 2019 16:44:13 -0800 (PST)
Received: from huawei.com (lhrrgout.huawei.com [185.176.76.210]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0B640120059 for <rats@ietf.org>; Thu, 14 Nov 2019 16:44:13 -0800 (PST)
Received: from lhreml706-cah.china.huawei.com (unknown [172.18.7.107]) by Forcepoint Email with ESMTP id 539209BFF8AD6199C79C; Fri, 15 Nov 2019 00:44:09 +0000 (GMT)
Received: from DGGEMM424-HUB.china.huawei.com (10.1.198.41) by lhreml706-cah.china.huawei.com (10.201.108.47) with Microsoft SMTP Server (TLS) id 14.3.408.0; Fri, 15 Nov 2019 00:44:08 +0000
Received: from DGGEMM531-MBS.china.huawei.com ([169.254.6.245]) by dggemm424-hub.china.huawei.com ([10.1.198.41]) with mapi id 14.03.0439.000; Fri, 15 Nov 2019 08:44:03 +0800
From: "Xialiang (Frank, Network Standard & Patent Dept)" <frank.xialiang@huawei.com>
To: =?utf-8?B?U2Now7Zud8OkbGRlciwgSsO8cmdlbg==?= <J.Schoenwaelder@jacobs-university.de>, Laurence Lundblade <lgl@island-resort.com>
CC: "Smith, Ned" <ned.smith@intel.com>, Henk Birkholz <henk.birkholz@sit.fraunhofer.de>, "Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com>, "Oliver, Ian (Nokia - FI/Espoo)" <ian.oliver@nokia-bell-labs.com>, Dave Thaler <dthaler@microsoft.com>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: [Rats] Call for adoption (after draft rename) for Yang module draft
Thread-Index: AQHVlCwI8/lytau3hU+AhCwtIdg/0ad+BqGAgAAHhQCAAAO1AIAGacyAgAAGuYCAAJAygIAAtdsAgAB+MgCAAqU4AIABTv6AgAE2YJA=
Date: Fri, 15 Nov 2019 00:44:02 +0000
Message-ID: <C02846B1344F344EB4FAA6FA7AF481F13EA362F0@DGGEMM531-MBS.china.huawei.com>
References: <8B173958-FC2A-4D1D-A81C-F324AB632CD7@cisco.com> <147F9159-6055-4E55-ABDC-43DFE3498BF1@island-resort.com> <ce5f8206-74dc-36bb-0093-a93045d5c67f@sit.fraunhofer.de> <0A7E3A4F-8534-4E98-BCB7-1454E07699F4@island-resort.com> <C3AE2645-49C8-4313-BCED-02FEB576B614@cisco.com> <1C8A1884-A37D-45E3-8C11-2FC5A083B245@island-resort.com> <HE1PR0702MB375366C5F7FE5C497C35D73B8F740@HE1PR0702MB3753.eurprd07.prod.outlook.com> <7106C9D3-8ED1-419E-81F8-4CDA799BEDAE@intel.com> <MWHPR21MB07844F61BEFAE03F9E7DD290A3770@MWHPR21MB0784.namprd21.prod.outlook.com> <6E7D64B4-2049-4D0A-ADC5-CA3F0647779B@island-resort.com> <20191114140600.itrr5mjiysgutsj5@anna.jacobs.jacobs-university.de>
In-Reply-To: <20191114140600.itrr5mjiysgutsj5@anna.jacobs.jacobs-university.de>
Accept-Language: zh-CN, en-US
Content-Language: zh-CN
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.45.30.144]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/kOFByMppMO2BWTAfrucVN3EdS9c>
Subject: [Rats] =?utf-8?b?562U5aSNOiAgQ2FsbCBmb3IgYWRvcHRpb24gKGFmdGVy?= =?utf-8?q?_draft_rename=29_for_Yang_module_draft?=
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 15 Nov 2019 00:44:15 -0000

Hi all,
I totally agree with Jurgen that RATS for network devices is not only the token format, but also an interaction protocol. So the netconf + YANG provide a very good solution set.
One example is that we may need the yang pub/sub & push mechanism for the remote attestation for some reason. If you are interested, we have a new individual draft about it:
https://tools.ietf.org/html/draft-xia-rats-pubsub-model-01

B.R.
Frank

-----邮件原件-----
发件人: RATS [mailto:rats-bounces@ietf.org] 代表 Sch?nw?lder, Jürgen
发送时间: 2019年11月14日 22:06
收件人: Laurence Lundblade <lgl@island-resort.com>;
抄送: Smith, Ned <ned.smith@intel.com>;; Henk Birkholz <henk.birkholz@sit.fraunhofer.de>;; Nancy Cam-Winget (ncamwing) <ncamwing@cisco.com>;; Oliver, Ian (Nokia - FI/Espoo) <ian.oliver@nokia-bell-labs.com>;; Dave Thaler <dthaler@microsoft.com>;; rats@ietf.org
主题: Re: [Rats] Call for adoption (after draft rename) for Yang module draft

On Wed, Nov 13, 2019 at 10:07:02AM -0800, Laurence Lundblade wrote:
> 
> I see EAT as applicable to all these worlds, where the YANG module is just for the smallish router world. So I mostly agree with Dave about proportions, however this is the IETF where YANG modules are created.  (Maybe I should go join the W3C world and work on attestations APIs for browsers after RATS is done).
>

If EAT is the common format for "token", then it does not make sense to me to define a YANG version of it. It may make sense to carry EAT token over protocols such as NETCONF or RESTCONF and to have a YANG module defining this may make sense for the networking device world.
This is then a definition of an interaction protocol, but not the token format itself.

If EAT is the common format for "token", then it may make sense to be able to include "claims" that are YANG defined data. That may be an extension of the core EAT definition (but EAT would have to allow for such an extension to work). There is a lot of formally defined data in YANG modules that would be convenient to reuse as claims in a networking world.

/js

-- 
Juergen Schoenwaelder           Jacobs University Bremen gGmbH
Phone: +49 421 200 3587         Campus Ring 1 | 28759 Bremen | Germany
Fax:   +49 421 200 3103         <https://www.jacobs-university.de/>

_______________________________________________
RATS mailing list
RATS@ietf.org
https://www.ietf.org/mailman/listinfo/rats