Re: [Rats] CoTS and CoRIM

Yogesh Deshpande <Yogesh.Deshpande@arm.com> Thu, 14 December 2023 13:10 UTC

Return-Path: <Yogesh.Deshpande@arm.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 300EFC14F601 for <rats@ietfa.amsl.com>; Thu, 14 Dec 2023 05:10:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.905
X-Spam-Level:
X-Spam-Status: No, score=-1.905 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XaPtZ8L_PrW3 for <rats@ietfa.amsl.com>; Thu, 14 Dec 2023 05:10:12 -0800 (PST)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2087.outbound.protection.outlook.com [40.107.21.87]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 78A43C14F5E3 for <rats@ietf.org>; Thu, 14 Dec 2023 05:10:08 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=RF3PrVAUtPbgCIKTPFXAeN8oiN69QcvjdeAa+VloDz8fJSIwzVjL5md8ipnEnlZ+aNxifZsUG+SE7gnNgqXmlxeOY6cIMNy1kUwjtLbJlFp/8bCQ/a5ZH9cmfoSZuvZ2dSfsc9jjwrXBGaHtgKzjmD9zzuIDZqOl1awNofWupmhbSki1ULePDGEwigarijj+N0z4w1tplidIhKfdZ2bGDXlCAy05Yz0o6tfBVSQEVUCrCwsHr88qc152bXF0onhVaTBN9G/ao3sEfm6z4o6mjkcrH3c3qoknifboDORHUWSKrk9ydaZyIyAh6sW8pPsDOYsyi5SGbk6fYLhGZHwjBg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=kFiVYEqrfXOafE01DsphpcwscvupuWyOXJ7f6GmyMZU=; b=D0PoKaaxwU+cbX7d135iGsL/luMPnS6gttcWpu2wQ7Avmenu6cg0CsnjNIbaosBQ34UuIYRHzF0GfQvvz4NngXk8rQnNfya7A1u9WeqSb3RCffzfJaNiMTme2CxQVsroxtB8f9MeCSKy9ld81uRSQGs3zglpR1EU0HD6Slk9NgkgnYLjsuhYvAf5HCRY+GsY/Gnn2hLpDufFQGhM5zPl98gg5V9ccW0jLIHOrYid+X2DubzzpMC/SxAhv6RrMkSxHhpKu/zcZcRYSXw6oyWRzvm+/kpqiKeChLLneCLvvLmfqadySDYr0wcQkrmp7U2B+rRIL2bCUpM2+c6awRfPiA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=kFiVYEqrfXOafE01DsphpcwscvupuWyOXJ7f6GmyMZU=; b=9p9Kg/vGiU42YquFWYpBDcXLBep8ivYc8vwJHRghwG6fcps/7LycZkh7ubR7FfqsSjHnHYcUPNvMbIRfRzA6IbtIccyfOZ208P3Az/QSiNY0m0U+oQUN6z0tgbtCtRFArm1tq89FJXpwONn71NeiUU17RxGdaR/NKZI98RShcho=
Received: from AM6PR08MB4325.eurprd08.prod.outlook.com (2603:10a6:20b:71::14) by GVXPR08MB10785.eurprd08.prod.outlook.com (2603:10a6:150:156::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7091.28; Thu, 14 Dec 2023 13:10:04 +0000
Received: from AM6PR08MB4325.eurprd08.prod.outlook.com ([fe80::4788:ed59:38cd:bbbe]) by AM6PR08MB4325.eurprd08.prod.outlook.com ([fe80::4788:ed59:38cd:bbbe%6]) with mapi id 15.20.7091.028; Thu, 14 Dec 2023 13:10:04 +0000
From: Yogesh Deshpande <Yogesh.Deshpande@arm.com>
To: "hannes.tschofenig@gmx.net" <hannes.tschofenig@gmx.net>, "muhammad_usama.sardar" <muhammad_usama.sardar@tu-dresden.de>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: [Rats] CoTS and CoRIM
Thread-Index: AdouAROwOiptuSqcS027iEQuheLmzQAZVk+AAAZF7kAAA43WAAAAMiKw
Date: Thu, 14 Dec 2023 13:10:04 +0000
Message-ID: <AM6PR08MB43255B8E2ECC1FE657AF325E8E8CA@AM6PR08MB4325.eurprd08.prod.outlook.com>
References: <005701da2e02$6acec900$406c5b00$@gmx.net> <84e6047b-b87b-4053-8e5a-fb2c8347defc@tu-dresden.de> <AM6PR08MB43257B9CB8ECD1BF6768D2138E8CA@AM6PR08MB4325.eurprd08.prod.outlook.com> <013001da2e8d$bf3c08a0$3db419e0$@gmx.net>
In-Reply-To: <013001da2e8d$bf3c08a0$3db419e0$@gmx.net>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: F4634F1C06B47E428E8286A7BE751B2A.0
x-checkrecipientchecked: true
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arm.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: AM6PR08MB4325:EE_|GVXPR08MB10785:EE_
x-ms-office365-filtering-correlation-id: 1f947817-ac8d-4f29-8e86-08dbfca5fd03
x-ld-processed: f34e5979-57d9-4aaa-ad4d-b122a662184d,ExtAddr
nodisclaimer: true
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:AM6PR08MB4325.eurprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(376002)(366004)(396003)(136003)(346002)(39860400002)(230922051799003)(186009)(1800799012)(451199024)(64100799003)(71200400001)(9686003)(9326002)(55016003)(966005)(478600001)(86362001)(83380400001)(52536014)(8936002)(8676002)(66946007)(66476007)(53546011)(64756008)(316002)(110136005)(66556008)(66446008)(76116006)(7696005)(6506007)(5660300002)(38100700002)(38070700009)(166002)(66899024)(33656002)(41300700001)(122000001)(2906002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_AM6PR08MB43255B8E2ECC1FE657AF325E8E8CAAM6PR08MB4325eurp_"
MIME-Version: 1.0
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: AM6PR08MB4325.eurprd08.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 1f947817-ac8d-4f29-8e86-08dbfca5fd03
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Dec 2023 13:10:04.7513 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 9qPA/xvxdXrMaiWeQGNG3Urz0OjCYOwdf53f09gW0V23SHEtqOnEWXYAryb5L94tVrUUnAl9k9XH/3p51xSg9X/n/ieufUpzZaW79rdg+58=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GVXPR08MB10785
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/mVxAgRO0MnmLczD52KG3O_1tFA4>
Subject: Re: [Rats] CoTS and CoRIM
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Dec 2023 13:10:14 -0000

Hi Hannes,

To your comment:
A word about the process: Decisions about the directions the document take should be made on the mailing list rather than in private meetings. The chairs should be more strict about this.

Please note: CoRIM Meetings are NOT private meetings.

We advertise the details of CoRIM Weekly Meeting periodically and everyone following RATS are Welcome to join and participate in the discussions.

Regards,
Yogesh

From: hannes.tschofenig@gmx.net <hannes.tschofenig@gmx.net>
Sent: Thursday, December 14, 2023 1:02 PM
To: Yogesh Deshpande <Yogesh.Deshpande@arm.com>; muhammad_usama.sardar <muhammad_usama.sardar@tu-dresden.de>; rats@ietf.org
Subject: RE: [Rats] CoTS and CoRIM

Thanks for the quick response, Yogesh.

Two points:


  *   The reason why I believe that the trust anchor functionality should be part of CoRIM is that it is a core feature rather than an extension. I understand that there is some history about how these documents came into existence but this should not prevent us from doing the “right” thing.


  *   Using trust anchors under the umbrella of endorsements makes sense to me. This needs to be more clearly articulated in the documents though.

A word about the process: Decisions about the directions the document take should be made on the mailing list rather than in private meetings. The chairs should be more strict about this.

Ciao
Hannes

From: RATS <rats-bounces@ietf.org<mailto:rats-bounces@ietf.org>> On Behalf Of Yogesh Deshpande
Sent: Donnerstag, 14. Dezember 2023 12:31
To: muhammad_usama.sardar <muhammad_usama.sardar@tu-dresden.de<mailto:muhammad_usama.sardar@tu-dresden.de>>; rats@ietf.org<mailto:rats@ietf.org>
Subject: Re: [Rats] CoTS and CoRIM

Hi Hannes,

To your question:

I am wondering why the two documents <draft-ietf-rats-corim> and <draft-ietf-rats-concise-ta-stores> aren’t merged.

The work on Cots started at different point in time (by different authors) and hence the CoRIM base document does refer Cots but is not fully integrated.

We will discuss the possibility and implications of such in our regular CoRIM meetings.

Regarding Trust Anchors as per RATS document (RFC 9334) to the best of my knowledge it comes under the heading of Endorsements.
https://datatracker.ietf.org/doc/html/rfc9334#name-endorsements

RATS treats Trust Anchors as a type of Endorsements.

Hope this information is helpful.

Regards,
Yogesh

From: RATS <rats-bounces@ietf.org<mailto:rats-bounces@ietf.org>> On Behalf Of Muhammad Usama Sardar
Sent: Thursday, December 14, 2023 8:21 AM
To: rats@ietf.org<mailto:rats@ietf.org>
Subject: Re: [Rats] CoTS and CoRIM


Hi Hannes,
On 13.12.23 21:24, hannes.tschofenig=40gmx.net@dmarc.ietf.org<mailto:hannes.tschofenig=40gmx.net@dmarc.ietf.org> wrote:
I am wondering why the two documents <draft-ietf-rats-corim> and <draft-ietf-rats-concise-ta-stores> aren’t merged. Reading through the RATS drafts I often get the impression that trust anchors have somehow been forgotten and were added later, as an afterthought. The RATS architecture RFC does not list trust anchors as an item in Figure 1. In some other document trust anchors are then portrait as belonging to reference values – somehow. That does not feel right to me either.

I think it is completely wrong to consider trust anchors as Reference Values. Can you name the document which presents this view?

Ciao
Hannes

Cheers,

Usama
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.