Re: [Rats] Mail regarding draft-ietf-rats-tpm-based-network-device-attest

"Mark D. Baushke" <mdb@juniper.net> Tue, 10 November 2020 15:38 UTC

Return-Path: <mdb@juniper.net>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2BB8C3A044A; Tue, 10 Nov 2020 07:38:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=AX4yOozM; dkim=pass (1024-bit key) header.d=juniper.net header.b=TWj3DNV9
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UOhCsXxa8lJL; Tue, 10 Nov 2020 07:38:19 -0800 (PST)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7B0263A09FC; Tue, 10 Nov 2020 07:37:16 -0800 (PST)
Received: from pps.filterd (m0108162.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id 0AAFX9pd007209; Tue, 10 Nov 2020 07:37:15 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=to : subject : in-reply-to : references : from : mime-version : content-type : content-id : date : message-id; s=PPS1017; bh=LXxiLTLpRbfxSFe0dDal7pe5cYileNX54+Z/0b4jaQA=; b=AX4yOozMDPKb1ONTfPzTqYmLrIO0xpZjEYzSiJHCZZX2S/2pk2mlp6f5eHLq+2Y17eGL PBG0FVb9428AVQWYIrjxSNYuDfc4XdXwZFuZRyy+n83QOo/20m896+Es04MtAF3/duSC e5iXG8EkilioDOqnOTDxnjO6hFOA6nXd+aKGUPrXP+77By1RyVTKHbS19GDjxrpiTCf9 +E/XNSIojqlkfN1bPJktLzH8z/KiGSZuYVrlQ6Cp4itnKcdSIOrBoSkrSnuJ7C/YuNhY ZRH+/5uzwdPVh5DJoecHJm7zXJdv+eS/EoDazmA0kOnvWgNNzWetaAfGWHM1yJc9gE2J pg==
Received: from nam02-cy1-obe.outbound.protection.outlook.com (mail-cys01nam02lp2057.outbound.protection.outlook.com [104.47.37.57]) by mx0b-00273201.pphosted.com with ESMTP id 34ntqdw25m-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 10 Nov 2020 07:37:15 -0800
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=jHYLK5iunLrtHjx9FvyGNvyEnpVOmyLF/wU1h2o1e3rmewmKtgP/bS+aT94OIzkrz26LXhDU3HaW5Lj9w0YE/SPXx9ZPMNfTzDgMHc0At2Krvg3ZKENzE3f05XIQRyuwl4B5O6NvdNnskUq2k/GXrNBvXs/0keKMVd7MQ6E381H/y3bkbroFRbGdORwFJvz7VViouXrwq4upt0St1VqDz18YuB+JnYlCFRrDktkhDRqVEBLQiqcAx39szIKK0Oqoh4PJqfnpDjYb5gdj+4ZgsQKxpnJAVuPbOiRa1RX6KFHtYIYEbbML32bFqO3XZw4Un3qZh9axljNId7IMbMtzbA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=LXxiLTLpRbfxSFe0dDal7pe5cYileNX54+Z/0b4jaQA=; b=UsdXGDNKDWve6JKsWvoY0jm+FCkmniUIR34Y8zbKLkXh6ncWKPK9VgVkt6SXAwycmiplSO73cw/He3PCCgRutSLcmvAEsvDKk8cExigyySkcwZ8JvQyEwZHbXjJI7t0r1Z+WfVypSBdhgT9plZy6ksecKbyNbL90xkbzq58MGzVj3qdat/5ZGWJLtLy8GqMYjAAkC1PBcQvHi9V51qvjmjCZkE9qCMOIX6lgus20CdhdStNFbupuMRRheJiV6mIo6yIcCGXwDiAiSGd5flcfEnEAFb/zi0qagHO69JGo5kv5WVh1LmsZVE/rcAFAd85RnXZttUwwsvJsgg5MusNl/g==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=softfail (sender ip is 66.129.242.12) smtp.rcpttodomain=ietf.org smtp.mailfrom=juniper.net; dmarc=fail (p=reject sp=reject pct=100) action=oreject header.from=juniper.net; dkim=none (message not signed); arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=LXxiLTLpRbfxSFe0dDal7pe5cYileNX54+Z/0b4jaQA=; b=TWj3DNV9Bn0b81HpYuFdSbtbf/ZSrK8mOPXD2Cau2Zxprb5RWSczbtUBKRpC3UFeLwXCbMLZanDOuJDYVhZub2oI1V0FYRVCBvy9GRKde7Ol0Z67dZ+OPIvn5dMnWGn8HmChu91C9a9/N8F81m69s/NjtVCMwfnoS1sU7vbeVgQ=
Received: from MWHPR10CA0051.namprd10.prod.outlook.com (2603:10b6:300:2c::13) by DM6PR05MB5065.namprd05.prod.outlook.com (2603:10b6:5:7d::28) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3564.13; Tue, 10 Nov 2020 15:37:13 +0000
Received: from CO1NAM05FT025.eop-nam05.prod.protection.outlook.com (2603:10b6:300:2c:cafe::33) by MWHPR10CA0051.outlook.office365.com (2603:10b6:300:2c::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3541.21 via Frontend Transport; Tue, 10 Nov 2020 15:37:13 +0000
X-MS-Exchange-Authentication-Results: spf=softfail (sender IP is 66.129.242.12) smtp.mailfrom=juniper.net; ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=fail action=oreject header.from=juniper.net;
Received-SPF: SoftFail (protection.outlook.com: domain of transitioning juniper.net discourages use of 66.129.242.12 as permitted sender)
Received: from P-EXFEND-EQX-01.jnpr.net (66.129.242.12) by CO1NAM05FT025.mail.protection.outlook.com (10.152.96.133) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.20.3564.13 via Frontend Transport; Tue, 10 Nov 2020 15:37:12 +0000
Received: from P-EXBEND-EQX-01.jnpr.net (10.104.8.52) by P-EXFEND-EQX-01.jnpr.net (10.104.8.54) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Tue, 10 Nov 2020 07:37:12 -0800
Received: from P-EXBEND-EQX-02.jnpr.net (10.104.8.53) by P-EXBEND-EQX-01.jnpr.net (10.104.8.52) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Tue, 10 Nov 2020 07:37:12 -0800
Received: from p-mailhub01.juniper.net (10.104.20.6) by P-EXBEND-EQX-02.jnpr.net (10.104.8.53) with Microsoft SMTP Server (TLS) id 15.0.1497.2 via Frontend Transport; Tue, 10 Nov 2020 07:37:12 -0800
Received: from eng-mail01.juniper.net (eng-mail01.juniper.net [10.108.17.159]) by p-mailhub01.juniper.net (8.14.4/8.11.3) with ESMTP id 0AAFbAv1031083; Tue, 10 Nov 2020 07:37:11 -0800 (envelope-from mdb@juniper.net)
To: <rats-chairs@ietf.org>, <draft-ietf-rats-tpm-based-network-device-attest@ietf.org>, <rats@ietf.org>
In-Reply-To: <67932.1602513807@eng-mail01.juniper.net>
References: <67932.1602513807@eng-mail01.juniper.net>
Comments: In-reply-to: "Mark D. Baushke" <mdb@juniper.net> message dated "Mon, 12 Oct 2020 07:43:27 -0700."
From: "Mark D. Baushke" <mdb@juniper.net>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-ID: <80758.1605022630.1@eng-mail01.juniper.net>
Date: Tue, 10 Nov 2020 07:37:10 -0800
Message-ID: <80759.1605022630@eng-mail01.juniper.net>
X-EXCLAIMER-MD-CONFIG: e3cb0ff2-54e7-4646-8a04-0dae4ac7b136
X-EOPAttributedMessage: 0
X-MS-Office365-Filtering-HT: Tenant
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: fcc11f0c-4a0d-44c9-8b33-08d8858e7ea6
X-MS-TrafficTypeDiagnostic: DM6PR05MB5065:
X-Microsoft-Antispam-PRVS: <DM6PR05MB5065A9B5F770FA03EE346CE0BFE90@DM6PR05MB5065.namprd05.prod.outlook.com>
X-MS-Oob-TLC-OOBClassifiers: OLM:5797;
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:66.129.242.12; CTRY:US; LANG:en; SCL:1; SRV:; IPV:CAL; SFV:NSPM; H:P-EXFEND-EQX-01.jnpr.net; PTR:InfoDomainNonexistent; CAT:NONE; SFS:(4636009)(39860400002)(346002)(136003)(396003)(376002)(46966005)(8936002)(15974865002)(336012)(8676002)(450100002)(5660300002)(426003)(70586007)(4744005)(70206006)(86362001)(47076004)(82310400003)(316002)(110136005)(7696005)(356005)(26005)(186003)(966005)(81166007)(82740400003)(2906002)(478600001)(18886075002); DIR:OUT; SFP:1102;
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 10 Nov 2020 15:37:12.8569 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: fcc11f0c-4a0d-44c9-8b33-08d8858e7ea6
X-MS-Exchange-CrossTenant-Id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=bea78b3c-4cdb-4130-854a-1d193232e5f4; Ip=[66.129.242.12]; Helo=[P-EXFEND-EQX-01.jnpr.net]
X-MS-Exchange-CrossTenant-AuthSource: CO1NAM05FT025.eop-nam05.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Anonymous
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR05MB5065
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.312, 18.0.737 definitions=2020-11-10_06:2020-11-10, 2020-11-10 signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 mlxlogscore=871 adultscore=0 spamscore=0 priorityscore=1501 phishscore=0 impostorscore=0 mlxscore=0 bulkscore=0 lowpriorityscore=0 malwarescore=0 suspectscore=0 clxscore=1015 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2011100111
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/plDJrkpDFRBxmd95_U8WGqFYokc>
Subject: Re: [Rats] Mail regarding draft-ietf-rats-tpm-based-network-device-attest
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 Nov 2020 15:38:20 -0000

Greetings fellow members of the IETF Rats Working Group.

https://tools.ietf.org/html/draft-ietf-rats-tpm-based-network-device-attest-05

My comments have all been addressed in -05.

I support the document moving forward.

-- 
Mark D. Baushke
mdb@juniper.net
Distinguished Engineer
Juniper Networks, Inc.
www.juniper.net