Re: [Rats] draft-birkholz-rats-network-device-subscription-00

"Eric Voit (evoit)" <evoit@cisco.com> Wed, 12 August 2020 19:57 UTC

Return-Path: <evoit@cisco.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5040E3A0863 for <rats@ietfa.amsl.com>; Wed, 12 Aug 2020 12:57:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.599
X-Spam-Level:
X-Spam-Status: No, score=-9.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=JJeG9B5j; dkim=fail (1024-bit key) reason="fail (body has been altered)" header.d=cisco.onmicrosoft.com header.b=eQjg4OT7
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id N3_IzvkwMFqS for <rats@ietfa.amsl.com>; Wed, 12 Aug 2020 12:57:20 -0700 (PDT)
Received: from alln-iport-4.cisco.com (alln-iport-4.cisco.com [173.37.142.91]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 374113A0593 for <rats@ietf.org>; Wed, 12 Aug 2020 12:57:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=13518; q=dns/txt; s=iport; t=1597262240; x=1598471840; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=I5AefPN5pgYoC9QfGJvdRnpEosCLF0g3JtbiR0t2MEA=; b=JJeG9B5jo5PYWPv+AQc0L4ZQcLvaDlr+8pm2yKBJiET26xNmJUbrmjYo mHjPAnS+ZCFQzi4QrgroXe4ljDf8oe6x9ur5q73fOm0sSWduA5LToR/MG 4cG+nQVB4Vg+Encmq4Kf+lsF5cOmUmK+hqISfYn4L/QP2aZgAoqC2zv0m c=;
X-Files: smime.p7s : 3975
IronPort-PHdr: =?us-ascii?q?9a23=3ArE3wCB9cLAc51P9uRHGN82YQeigqvan1NQcJ65?= =?us-ascii?q?0hzqhDabmn44+7ZRCN5PNxgVuPVoLeuLpIiOvT5qbnX2FIoZOMq2sLf5EEUR?= =?us-ascii?q?gZwd4XkAotDI/gawX7IffmYjZ8EJFEU1lorHC9LUVRXs35Yg6arni79zVHHB?= =?us-ascii?q?L5OEJ8Lfj0HYiHicOx2qiy9pTfbh8OiiC6ZOZ5LQ69qkPascxFjA=3D=3D?=
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: =?us-ascii?q?A0CBAACqSDRf/5xdJa1fGQEBAQEBAQE?= =?us-ascii?q?BAQEBAQEBAQEBARIBAQEBAQEBAQEBAQGCCoFSKSgHbystLywKhCyDRgONV5h?= =?us-ascii?q?mglMDVQQHAQEBCQMBARgNCAIEAQGBbYJfAoI2AiQ4EwIDAQELAQEFAQEBAgE?= =?us-ascii?q?GBG2FXAyFcQEBAQMBAQEQER0BASwLAQQHBAIBBgIRBAEBAQwBHQICAiULHQg?= =?us-ascii?q?BAQQBDQUIBhSCOUYEAoF+TQMOEQ8BDpZLkGgCgTmIYXaBMoMBAQEFhSMDFYI?= =?us-ascii?q?HBwmBOAGBUoEehhqDdg8agUE/gRFDgk0+glwBAQIBFoFIFSeCWTOCLY9zihO?= =?us-ascii?q?bHoEICoJihDiCXIFPkVeCfoEjiDaTPoVXjFifNAIEAgQFAg4BAQWBaiMNgUp?= =?us-ascii?q?wFRohgmkJRxcCDY4fg3GFFIVCdAIBATMCBgEHAQEDCXyOXAGBEAEB?=
X-IronPort-AV: E=Sophos;i="5.76,305,1592870400"; d="p7s'?scan'208";a="525762150"
Received: from rcdn-core-5.cisco.com ([173.37.93.156]) by alln-iport-4.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 12 Aug 2020 19:57:19 +0000
Received: from XCH-RCD-005.cisco.com (xch-rcd-005.cisco.com [173.37.102.15]) by rcdn-core-5.cisco.com (8.15.2/8.15.2) with ESMTPS id 07CJvIlh013635 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 12 Aug 2020 19:57:19 GMT
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by XCH-RCD-005.cisco.com (173.37.102.15) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 12 Aug 2020 14:57:18 -0500
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 12 Aug 2020 15:57:17 -0400
Received: from NAM11-BN8-obe.outbound.protection.outlook.com (64.101.32.56) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2 via Frontend Transport; Wed, 12 Aug 2020 15:57:17 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=D1Z6qT61jaNjaoIfgVQEwo5CgDYZheP890Zsbf+M+/03aDXVS9+li4p9wgFF7BADHRsa6ZoVEZ/0qqx4GoYvx6Avo+2p+oex/UuaHxGOdQPPJIKjVY5xdsVZ9O6JtrozptR74Bjgtz5RbokT0E55cFY0Cz5MGsgtUrgotcAn/tfgUxrWcoMDz/96t5dppRSM69KYXUgeK2Yc34hOYKYicxaKaTKY7o1HJVhbkfIwOswY+QBmQMUOlKSOYTMGrF91ew+XoMXgmnMe6dQh52ai4j/mxhgqlS8FcH4dBx6yXQ6Y0Dd9MzgNFF3a5JdvzeUqwktCVAjkFVx6DVZR+wMZyw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=/m0TnyEjPwy4ii5AE81d7qgdBOYyBBDsATo6ncohyjg=; b=OSGG/6Fb3hm8lD6T1GBPnQU4niHN6FvtYZhx1FuiRrBk7vAj8s0GKbZhv/GnzTgamXAf9xdfeYUuAbd4KhWVshpnKdTQrnPr8BdBb3e0OicUCQa5BE5IAjthMub/8rQW3sOmzs4JkraK1FNhQywsxhYJs3nzYaSUBObFVQVKLmHzs9txIkIhmui8sPR+4bM5K0ILmV3Ynw7wH1tH1c8y8mDqFnBpoCj7AdcQLMogfdprsyvQYyV2ljrZ1Q+bHJS00K4V1IXUEh3MBPemaqWa7nxInsxpL2SQqu4sZczSwBEhNQbFY5snGh+HcE9ciWNapKy6tZmU3b1ZUMKVYob3nA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=/m0TnyEjPwy4ii5AE81d7qgdBOYyBBDsATo6ncohyjg=; b=eQjg4OT7qhV+XHD+OLpkkSEEJD8vPxPaFJqQ3iyKk1oz+PQiY7SjzD/+SuNEh40g4xEzmmhKtlMiYxoLPWxB4kxI6k1GsSVInErSyD/dq/j+d4RQ+L5ocp5gXJKEr2T8YlZORQdpbh4tM1MfXp3oAlKAJ5QY7vkKeq8SDBst3c8=
Received: from BL0PR11MB3122.namprd11.prod.outlook.com (2603:10b6:208:75::32) by BL0PR11MB3218.namprd11.prod.outlook.com (2603:10b6:208:60::27) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3261.18; Wed, 12 Aug 2020 19:57:16 +0000
Received: from BL0PR11MB3122.namprd11.prod.outlook.com ([fe80::fcd5:b07d:e935:8956]) by BL0PR11MB3122.namprd11.prod.outlook.com ([fe80::fcd5:b07d:e935:8956%7]) with mapi id 15.20.3283.016; Wed, 12 Aug 2020 19:57:16 +0000
From: "Eric Voit (evoit)" <evoit@cisco.com>
To: "Smith, Ned" <ned.smith@intel.com>, Henk Birkholz <henk.birkholz@sit.fraunhofer.de>, Dave Thaler <dthaler@microsoft.com>, "Eric Voit (evoit)" <evoit=40cisco.com@dmarc.ietf.org>, "rats@ietf.org" <rats@ietf.org>
CC: Wei Pan <william.panwei@huawei.com>
Thread-Topic: [Rats] draft-birkholz-rats-network-device-subscription-00
Thread-Index: AdZKRjugUmuktT1iTCKR70EUNGNj/gao8ZEPAAE4nYACybsMUA==
Date: Wed, 12 Aug 2020 19:57:16 +0000
Message-ID: <BL0PR11MB312228D0ED3719D388D1F570A1420@BL0PR11MB3122.namprd11.prod.outlook.com>
References: <BL0PR11MB31221B4EE75AADDB4685CBDEA1950@BL0PR11MB3122.namprd11.prod.outlook.com> <BL0PR2101MB1027CB2B71CA83305B9608BAA3730@BL0PR2101MB1027.namprd21.prod.outlook.com> <0428729f-5754-8b19-6bbf-378aa123c799@sit.fraunhofer.de> <140611B6-9060-47A8-957F-3D4E8E7BFACD@intel.com>
In-Reply-To: <140611B6-9060-47A8-957F-3D4E8E7BFACD@intel.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
authentication-results: intel.com; dkim=none (message not signed) header.d=none;intel.com; dmarc=none action=none header.from=cisco.com;
x-originating-ip: [173.38.117.78]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: b981e6c4-1bba-4ad3-6678-08d83ef9ea11
x-ms-traffictypediagnostic: BL0PR11MB3218:
x-microsoft-antispam-prvs: <BL0PR11MB3218A4B5C3385FBB3FDD8F55A1420@BL0PR11MB3218.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 4+LLazHIkqQGeAscULrU7pXKcCO3fR8wcdlz0dhbvvpZZpB6WaXLvyaUUQk3q/RQByhqGp71YKpXfJKRKNR8xdyyYX07AbRSjYVU5wrrOyNPAYsArLpqqjnNdy9vVCk7bxJuQsNlAdRGeMOo/i/tAvjDaqwWiiXtn4domtBepNaOKte9OuHArF+CG5245ZS32b1C8vTlZAfVPE5prnNXm0TkuXg1rdG9R5yOxcuvtO1LSNuNRuUhpICHiRCGx4S6MtUlYc4bue/IICwN7llJDo1fee+snZCR69TIY8DRm1QCloG9LEQixHCbFhs5fGIFtkXhukxKx+wlHYi2KL+QzGg7swlcpvO5rF5sU/zKe4jjQLo/bvipOgGf1uPI2hvKgDIjrDAfMj3ikDKlnM3Fag==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BL0PR11MB3122.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(4636009)(396003)(376002)(39860400002)(366004)(346002)(136003)(966005)(5660300002)(110136005)(99936003)(186003)(86362001)(76116006)(71200400001)(66946007)(66616009)(33656002)(26005)(83380400001)(478600001)(9686003)(316002)(66556008)(45080400002)(8936002)(55016002)(7696005)(66446008)(4326008)(64756008)(2906002)(52536014)(83080400001)(53546011)(6506007)(66476007)(66574015)(8676002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg=SHA1; boundary="----=_NextPart_000_0171_01D670C1.3EB35EF0"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BL0PR11MB3122.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: b981e6c4-1bba-4ad3-6678-08d83ef9ea11
X-MS-Exchange-CrossTenant-originalarrivaltime: 12 Aug 2020 19:57:16.6879 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: MDZk0rv053DxvX+6qD+KUKylrtmzIlVbXhCDuLUpqYkAwfy29XutYjaSNf+GWTOm
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BL0PR11MB3218
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.102.15, xch-rcd-005.cisco.com
X-Outbound-Node: rcdn-core-5.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/q2Fj4pEpnS3D7NHNzu8WjlFOquc>
Subject: Re: [Rats] draft-birkholz-rats-network-device-subscription-00
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote ATtestation procedureS <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 12 Aug 2020 19:57:23 -0000

Hi Ned,

> From: Smith, Ned, July 28, 2020 10:54 AM
> 
> Subscription models could be topic based rather than entity based. The use case
> below suggests that a Verifier is interested in system booting events. A topic-
> based approach might allow Verifiers to subscribe to "boot image X" as the
> topic. All entities that collect a Claim for "image X" would publish the Claim to
> the field of subscribers.
> 
> Is the use of YANG to describe pub/sub limiting the ability to do topic-based
> pub/sub?

There shouldn't be any limitations inherent in doing topic-based pub/sub.   In fact, the current draft does allow for a number of pre-packaged topics as part of the event stream, as long as they are PCR based.  For example,

- a Verifier can subscribe to all 'extend' and 'quote' operations for a set of PCRs (such as PCRs 0-8).  As pre-defined set of PCRs could be considered a micro-topic.
- based on the subscription parameters requested, the Attester can filter out information for PCRs which you don't care about.  

One thing that isn't currently supported are stateful filters.  I.e., if from one event you glean that you are not running "boot image X" then throw away all subsequent events.  It is not the YANG model which prevents this, it is that a stateful event filtering language would need to be defined.

Alternatively, you could always define a new stream called "boot image X" and let people subscribe to that.  RFC8639 encourages the definition of new event streams for purposes like this.

Eric

> -Ned
> 
> On 7/28/20, 7:19 AM, "RATS on behalf of Henk Birkholz" <rats-
> bounces@ietf.org on behalf of henk.birkholz@sit.fraunhofer.de> wrote:
> 
>     Hi Dave,
> 
>     a clarifying question:
> 
>     What exactly do you mean by the "who" in "a subscriber knows who to
>     subscribe to"?
> 
>     The I-D does not come with its own join/rendezvous/discovery capability.
>     That either comes related with YANG Push ("call home"). That would be a
>     "who" on the entity level.
> 
>     Another possibility is that you mean a YANG RPC with the "who"? That
>     would be a "who" on the management interface level.
> 
>     Or you could mean one of the Attesting Environment of a composite
>     Attester. Tha would be a "who" on the Attester level. And that is done
>     via the included data store.
> 
>     Or do you mean something I am missing here?
> 
>     Viele Grüße,
> 
>     Henk
> 
>     On 28.07.20 16:10, Dave Thaler wrote:
>     > I asked in the meeting how a subscriber knows who to subscribe to, and I
> believe the answer was
>     > that CHARRA answers that.  Well I looked in draft-ietf-rats-yang-tpm-
> charra-02 and it does not
>     > contain any mention of the subject.  I think one or the other of the two
> drafts needs to address
>     > this issue.  My preference is that it be in draft-birkholz-rats-network-device-
> subscription since
>     > that's the draft that talks about limitations like
>     >> Evidence is not streamed to an interested Verifier as soon as it is
> generated.
>     > Which certainly still applies, it's just another case... you didn't know to
> subscribe to it until
>     > after the evidence was generated when it booted.
>     >
>     > Dave
>     >
>     > -----Original Message-----
>     > From: RATS <rats-bounces@ietf.org> On Behalf Of Eric Voit (evoit)
>     > Sent: Wednesday, June 24, 2020 9:41 AM
>     > To: rats@ietf.org
>     > Cc: Wei Pan <william.panwei@huawei.com>om>; Birkholz, Henk
> <henk.birkholz@sit.fraunhofer.de>
>     > Subject: [Rats] draft-birkholz-rats-network-device-subscription-00
>     >
>     > Hi All,
>     >
>     > This draft defines how to subscribe to a stream of attestation related
> Evidence on TPM-based network devices.  When subscribed, a Telemetry
> stream of verifiably fresh YANG notifications (which are generated when TPM
> PCRs are
>     > extended) are pushed to the subscriber.
>     >
>     > This draft integrates:
>     >   *  Section 5 of draft-voit-rats-trusted-path-routing-01
>     >   *  Elements of draft-xia-rats-pubsub-model
>     >
>     > Thanks!
>     >
>     > Eric, Henk, and Wei
>     >
>     >
>     > -----Original Message-----
>     > From: internet-drafts@ietf.org <internet-drafts@ietf.org>
>     > Sent: Wednesday, June 24, 2020 12:19 PM
>     > To: Eric Voit (evoit) <evoit@cisco.com>om>; Wei Pan
> <william.panwei@huawei.com>om>; Henk Birkholz
> <henk.birkholz@sit.fraunhofer.de>
>     > Subject: New Version Notification for
>     > draft-birkholz-rats-network-device-subscription-00.txt
>     >
>     >
>     > A new version of I-D, draft-birkholz-rats-network-device-subscription-
> 00.txt
>     > has been successfully submitted by Eric Voit and posted to the IETF
> repository.
>     >
>     > Name:		draft-birkholz-rats-network-device-subscription
>     > Revision:	00
>     > Title:		Attestation Event Stream Subscription
>     > Document date:	2020-06-24
>     > Group:		Individual Submission
>     > Pages:		20
>     > URL:
>     >
> https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.i
> etf.org%2Finternet-drafts%2Fdraft-birkholz-rats-network-device-subscription-
> 00.txt&amp;data=02%7C01%7Cdthaler%40microsoft.com%7C25825e2a3783
> 449230a708d8185d77f6%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C
> 0%7C637286137029115135&amp;sdata=MnEJ5ZwAh4BlTNs09fk0Vr1H39j5N
> %2BJdyBQHNJp7BdY%3D&amp;reserved=0
>     > Status:
>     >
> https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatr
> acker.ietf.org%2Fdoc%2Fdraft-birkholz-rats-network-device-
> subscription%2F&amp;data=02%7C01%7Cdthaler%40microsoft.com%7C2582
> 5e2a3783449230a708d8185d77f6%7C72f988bf86f141af91ab2d7cd011db47
> %7C1%7C0%7C637286137029115135&amp;sdata=qukLQaq17P4ts20nW1L%
> 2B2dB9zIM9XB9SRcscFWcOeLw%3D&amp;reserved=0
>     > Htmlized:
>     >
> https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftools.i
> etf.org%2Fhtml%2Fdraft-birkholz-rats-network-device-subscription-
> 00&amp;data=02%7C01%7Cdthaler%40microsoft.com%7C25825e2a3783449
> 230a708d8185d77f6%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%
> 7C637286137029125095&amp;sdata=Q0TfFjrfHZU%2FKFOT3li4JG0QoBa3Vo
> %2FkHTp00T6GbZY%3D&amp;reserved=0
>     > Htmlized:
>     >
> https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatr
> acker.ietf.org%2Fdoc%2Fhtml%2Fdraft-birkholz-rats-network-device-
> subscription&amp;data=02%7C01%7Cdthaler%40microsoft.com%7C25825e2
> a3783449230a708d8185d77f6%7C72f988bf86f141af91ab2d7cd011db47%7
> C1%7C0%7C637286137029125095&amp;sdata=RLSvdRTcWX4Gew50X2DL7t
> 2pE7N%2FA%2BKWrAVz0NhsbiA%3D&amp;reserved=0
>     >
>     >
>     > Abstract:
>     >     This document defines how to subscribe to a stream of attestation
>     >     related Evidence on TPM-based network devices.
>     >
>     >
>     >
>     >
>     > Please note that it may take a couple of minutes from the time of
> submission until the htmlized version and diff are available at tools.ietf.org.
>     >
>     > The IETF Secretariat
>     >
>     >
> 
>     _______________________________________________
>     RATS mailing list
>     RATS@ietf.org
>     https://www.ietf.org/mailman/listinfo/rats
> 
> _______________________________________________
> RATS mailing list
> RATS@ietf.org
> https://www.ietf.org/mailman/listinfo/rats