Re: [Rats] draft-dthaler-rats-endorsements: request for WG adoption?

"Smith, Ned" <ned.smith@intel.com> Fri, 19 May 2023 00:20 UTC

Return-Path: <ned.smith@intel.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5E85BC151060 for <rats@ietfa.amsl.com>; Thu, 18 May 2023 17:20:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.093
X-Spam-Level:
X-Spam-Status: No, score=-2.093 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=intel.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7bwmQH9mvdM7 for <rats@ietfa.amsl.com>; Thu, 18 May 2023 17:20:21 -0700 (PDT)
Received: from mga06.intel.com (mga06b.intel.com [134.134.136.31]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 178D5C14CF1A for <rats@ietf.org>; Thu, 18 May 2023 17:20:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=intel.com; i=@intel.com; q=dns/txt; s=Intel; t=1684455621; x=1715991621; h=from:to:subject:date:message-id:references:in-reply-to: mime-version; bh=9CH6rbwXO8f31iXr8E6fU5p6S2yHvhf/Ay97B44By7s=; b=FoBkYfq/ZrxqwXCYJBIH/ymsqXauIkAcDy8B6dLqV/DC4/LhPXdr+8g7 ZRtvEb5javwer30XFa+pOGqQK//i5yLbri+j3v8He3x+XbOVw5EwcFS4u u3Fg0zd8EPQAZfmHiKZp3YAgRUUfYUdFzXzGc9IsL10gxifF6mY0DaoAo XwUkUr6JEC/bXQGdrHROdOl1YOtwKdmR8W31iuzvBeciB3lQ0oyMWP/QQ AJOJlszP/Ezjs9eWBGl7/bXm0V7UF5f9bqoqFNKvGekETlvRFcHzmeOkJ N9DcgdOnlsAWwUz1mLnxWhOtF3XObBymfcHwe+cnc6s1xfuAdwkxJn/4A Q==;
X-IronPort-AV: E=McAfee;i="6600,9927,10714"; a="415688817"
X-IronPort-AV: E=Sophos;i="6.00,175,1681196400"; d="scan'208,217";a="415688817"
Received: from orsmga002.jf.intel.com ([10.7.209.21]) by orsmga104.jf.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 18 May 2023 17:20:11 -0700
X-ExtLoop1: 1
X-IronPort-AV: E=McAfee;i="6600,9927,10714"; a="702323077"
X-IronPort-AV: E=Sophos;i="6.00,175,1681196400"; d="scan'208,217";a="702323077"
Received: from orsmsx602.amr.corp.intel.com ([10.22.229.15]) by orsmga002.jf.intel.com with ESMTP; 18 May 2023 17:20:10 -0700
Received: from orsmsx612.amr.corp.intel.com (10.22.229.25) by ORSMSX602.amr.corp.intel.com (10.22.229.15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2507.23; Thu, 18 May 2023 17:20:10 -0700
Received: from orsmsx610.amr.corp.intel.com (10.22.229.23) by ORSMSX612.amr.corp.intel.com (10.22.229.25) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2507.23; Thu, 18 May 2023 17:20:09 -0700
Received: from ORSEDG602.ED.cps.intel.com (10.7.248.7) by orsmsx610.amr.corp.intel.com (10.22.229.23) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2507.23 via Frontend Transport; Thu, 18 May 2023 17:20:09 -0700
Received: from NAM02-SN1-obe.outbound.protection.outlook.com (104.47.57.45) by edgegateway.intel.com (134.134.137.103) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.1.2507.23; Thu, 18 May 2023 17:20:09 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=EU+v74eJEvKazAqaWTZwlQZi3FJzFKIS8gaFbxqdnddjMuIg8EHPxM0XqF3Jzsicy1hAli0QMB0VV/+Kelcn8SEsVo4PWXsm0N/g0OBlRfNImkFgALwbTQqMMXlMaXKFdtPOFHyhpYb1k53GVNVyWanE0BwUiWNLzro9v8QIAcPmJPlR/CTj+QE9tUxstohDpIA4HA89V0c5kVAMNhvasTUonyjZ+QYMyYZMMfAELgaiM6ncQHQTq5EKpMndlmhrB8tjDTF72NqZgR+X6YmdPCsrKCTI0tVZ7N+1sCAdPWIGFygdrewdjrpJ4sE/YJ/hXcsfr9mf0b4js+FInRqyNw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=9CH6rbwXO8f31iXr8E6fU5p6S2yHvhf/Ay97B44By7s=; b=ae9/HradiDnDIZs30yLJODCesyHGYx8k8fCbqzcLcp1KplPh0GyjtWQHW8iVDzI5Z2/GXt4/MoEwqTTKsPvtrxan6xQS+z5PPnMjeAWerte2LgoA5qUxj6oTUu1jg6uDf9Upnjj+2YEmlvKNDo4za9N+mcx+YkzrcW77oJM+MROE34wQC+ra+25PasZ12RSUQJG4PDY99g9YcvrXpbxl/7qYmOsdZ6gY/9mFjfljZZ9CLgt+23p+Eye2WfcuDb0HPweB2lIB5QjsJyadMdyei7r+1hzkIzYbiFwxA3RbhWW/kDPpbmPs9QvtZDLSRGxYDuXWuHtsJ83w/svrUzOZOg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=intel.com; dmarc=pass action=none header.from=intel.com; dkim=pass header.d=intel.com; arc=none
Received: from CO1PR11MB5169.namprd11.prod.outlook.com (2603:10b6:303:95::19) by CO1PR11MB4932.namprd11.prod.outlook.com (2603:10b6:303:98::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6411.19; Fri, 19 May 2023 00:20:02 +0000
Received: from CO1PR11MB5169.namprd11.prod.outlook.com ([fe80::9751:16de:c10e:5cd5]) by CO1PR11MB5169.namprd11.prod.outlook.com ([fe80::9751:16de:c10e:5cd5%5]) with mapi id 15.20.6411.019; Fri, 19 May 2023 00:20:02 +0000
From: "Smith, Ned" <ned.smith@intel.com>
To: Dave Thaler <dthaler=40microsoft.com@dmarc.ietf.org>, Carl Wallace <carl@redhoundsoftware.com>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: [Rats] draft-dthaler-rats-endorsements: request for WG adoption?
Thread-Index: AQHZiXABJUa+DSUB9E+h48cJqiMBaq9gfiiA///I7IA=
Date: Fri, 19 May 2023 00:20:02 +0000
Message-ID: <9FE6F9D2-8246-47FA-B662-063C7873925C@intel.com>
References: <915FE2CD-5F66-4C81-86D6-E85424E98E92@redhoundsoftware.com> <PH7PR21MB387820CC41EE474CBF0275CDA37FA@PH7PR21MB3878.namprd21.prod.outlook.com>
In-Reply-To: <PH7PR21MB387820CC41EE474CBF0275CDA37FA@PH7PR21MB3878.namprd21.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=e25abc7b-c022-45a8-89b7-6cdc3612e8bf; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2023-05-18T20:28:07Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47;
user-agent: Microsoft-MacOutlook/16.73.23051401
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=intel.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CO1PR11MB5169:EE_|CO1PR11MB4932:EE_
x-ms-office365-filtering-correlation-id: 4654d1fb-4334-476a-3950-08db57feca17
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CO1PR11MB5169.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(366004)(39860400002)(346002)(376002)(396003)(136003)(451199021)(26005)(6512007)(6506007)(53546011)(966005)(36756003)(2616005)(83380400001)(38070700005)(166002)(33656002)(86362001)(122000001)(82960400001)(186003)(38100700002)(110136005)(6486002)(478600001)(2906002)(316002)(8936002)(8676002)(41300700001)(5660300002)(91956017)(66476007)(64756008)(66446008)(76116006)(66946007)(66556008)(71200400001)(45080400002)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_9FE6F9D2824647FAB662063C7873925Cintelcom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CO1PR11MB5169.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 4654d1fb-4334-476a-3950-08db57feca17
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 May 2023 00:20:02.6711 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 46c98d88-e344-4ed4-8496-4ed7712e255d
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: EKBZlgTH97r6cqD0MDF1oqvwm3r6iuc/MdfWhAbvR+H5nJKxBREbI+6okG4EdtiWeleCwGvKnUJYcpYjdlDtMQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CO1PR11MB4932
X-OriginatorOrg: intel.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/mGvbk07Sx4FHgpyUvHY41vyN7Lg>
Subject: Re: [Rats] draft-dthaler-rats-endorsements: request for WG adoption?
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 19 May 2023 00:20:25 -0000

“actual state” seem close to or appropriate for appraised evidence and endorsements. I excluded “evidence” because it is an asserted state that may not be actual until it is appraised.
“desired state” seems close or appropriate for reference values.

From: RATS <rats-bounces@ietf.org> on behalf of Dave Thaler <dthaler=40microsoft.com@dmarc.ietf.org>
Date: Thursday, May 18, 2023 at 1:38 PM
To: Carl Wallace <carl@redhoundsoftware.com>, "rats@ietf.org" <rats@ietf.org>
Subject: Re: [Rats] draft-dthaler-rats-endorsements: request for WG adoption?

Thanks Carl.

For point 1, would “actual state” be ok?   For example discussions like

  *   https://en.wikipedia.org/wiki/Control_loop
  *   https://kubernetes.io/docs/concepts/workloads/controllers/deployment/
  *   Academic papers like https://ieeexplore.ieee.org/abstract/document/5976793
  *   Etc.
All use “desired” vs “actual” (as opposed to “current”).

Dave

From: Carl Wallace <carl@redhoundsoftware.com>
Sent: Thursday, May 18, 2023 3:03 AM
To: Dave Thaler <dthaler@microsoft.com>; rats@ietf.org
Subject: Re: [Rats] draft-dthaler-rats-endorsements: request for WG adoption?

An informational draft on endorsements seems like a good addition, so I support adoption. Two nits:


  1.  I’d prefer “observed state” to “current state” in most places throughout. This would be more consistent with the first sentence in the second paragraph of section 2.
  2.  In the next to last paragraph of section 2.1, I’d change “sign Evidence” to “verify Evidence” where discussing trust anchors.

From: RATS <rats-bounces@ietf.org<mailto:rats-bounces@ietf.org>> on behalf of Dave Thaler <dthaler=40microsoft.com@dmarc.ietf.org<mailto:dthaler=40microsoft.com@dmarc.ietf.org>>
Date: Tuesday, May 16, 2023 at 11:03 PM
To: "rats@ietf.org<mailto:rats@ietf.org>" <rats@ietf.org<mailto:rats@ietf.org>>
Subject: [Rats] draft-dthaler-rats-endorsements: request for WG adoption?

draft-dthaler-rats-endorsements-01 is now posted which makes the updates I mentioned
at IETF 116.  Notably it does not mention EAT or CORIM and only discusses endorsements
in general, like my presentation to the WG did, thanks to feedback from Ned and others.

From IETF 116 minutes:

  *   Dave to make an update, and then will ask for WG adoption.

Now that I have made the update, I would like to ask the WG for adoption.
It is quite short (6 pages).

https://datatracker.ietf.org/doc/draft-dthaler-rats-endorsements/

Dave
_______________________________________________ RATS mailing list RATS@ietf.org<mailto:RATS@ietf.org> https://www.ietf.org/mailman/listinfo/rats