[Rats] Re: Call for adoption: draft-deshpande-rats-multi-verifier-04 (Ends 2026-04-24)

Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de> Thu, 23 April 2026 09:38 UTC

Return-Path: <muhammad_usama.sardar@tu-dresden.de>
X-Original-To: rats@mail2.ietf.org
Delivered-To: rats@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id EB9FFE18E5A4; Thu, 23 Apr 2026 02:38:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1776937100; bh=3AIFj/VIsAewZsETS2QuODJBW7EHYDqgs5OGRNcGRmc=; h=Date:Subject:To:CC:References:From:In-Reply-To; b=t5lPWcne58PQXKccU/RNBy/nkxT05q5OQsC+dztUh/q93Q9WqZgT4lsqYgyQtrhtA 6sSp0f2P7e3Uhs6joyaikRtxaYs/CsC3BBDH4ZDWiGwoArpU+qmSC2rp2ivOkQRlyu 9AnUQoqHvOdIS1pYmXcTFd3Q9LhjfzGgcwYkzO9Y=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -4.398
X-Spam-Level:
X-Spam-Status: No, score=-4.398 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=tu-dresden.de
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PSh8VaLJUVzc; Thu, 23 Apr 2026 02:38:20 -0700 (PDT)
Received: from mailout3.zih.tu-dresden.de (mailout3.zih.tu-dresden.de [141.30.67.74]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 450B9E18E596; Thu, 23 Apr 2026 02:38:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=tu-dresden.de; s=dkim2022; h=Content-Type:In-Reply-To:From:References:CC:To :Subject:MIME-Version:Date:Message-ID:Sender:Reply-To: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=oBcYuugyHK3W7I+o674zF75iDew+vY99TxyCO2nbY2g=; b=yCuKs7aX1B9V3TD4HcA0FHztnP hAOf1tzQh7gmXzu+OZ2A2suTA8CSom2I6rmcDmGN8U0J6yU97NOBrTT3Riiop3Br1RKYIDsTUUSM2 L//u7nQTcDNjIg/VmehZSDl9inKWStGb8vwkoLbgk2RzJsW8Al4DjwrASY1WfYIo8Waql+latQeWZ OR0eNuoVZ9/eGTUabV5eVDZslZFaO4eLKj1n9sAiRfMlRuxyBASJzM/6FN5H23j7hTRVI6INWuf+3 Y+pnp3eMwtDk+fexLr442rEmd7ig5QondfTo74bXp2vAApDbdmdSZokREZemLm9oexGcHAOCj0BNA kEvwc+qg==;
Received: from msx-t422.msx.ad.zih.tu-dresden.de ([172.26.35.139] helo=msx.tu-dresden.de) by mailout3.zih.tu-dresden.de with esmtps (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from <muhammad_usama.sardar@tu-dresden.de>) id 1wFqVm-000fw5-1a; Thu, 23 Apr 2026 11:38:18 +0200
Received: from [10.12.5.228] (141.76.13.165) by msx-t422.msx.ad.zih.tu-dresden.de (172.26.35.139) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.2562.37; Thu, 23 Apr 2026 11:38:06 +0200
Message-ID: <e629c74b-95f5-4ca3-8baa-ca4482190469@tu-dresden.de>
Date: Thu, 23 Apr 2026 11:38:05 +0200
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
To: Henk Birkholz <henk.birkholz@ietf.contact>
References: <177643631672.70056.16474393035056250188@dt-datatracker-b45949c58-5szpr> <DB9PR08MB8699985F787BAF9E21A0C32FEF2D2@DB9PR08MB8699.eurprd08.prod.outlook.com> <CAHu=PL0k6=JNp=CT9j_PJ68eTD+e=uf+0SnDh53a=asNKAyWzg@mail.gmail.com> <89fac009-77f3-4352-4a71-7a34159afd68@ietf.contact>
Content-Language: en-US
From: Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de>
In-Reply-To: <89fac009-77f3-4352-4a71-7a34159afd68@ietf.contact>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg="sha-512"; boundary="------------ms080400090005020807050308"
X-ClientProxiedBy: MSX-T416.msx.ad.zih.tu-dresden.de (172.26.35.136) To msx-t422.msx.ad.zih.tu-dresden.de (172.26.35.139)
X-TUD-Virus-Scanned: mailout3.zih.tu-dresden.de
Message-ID-Hash: 7JVM4SDCMFO6BYRBPGZXGYW7CN642QAQ
X-Message-ID-Hash: 7JVM4SDCMFO6BYRBPGZXGYW7CN642QAQ
X-MailFrom: muhammad_usama.sardar@tu-dresden.de
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-rats.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "rats@ietf.org" <rats@ietf.org>, "rats-chairs@ietf.org" <rats-chairs@ietf.org>, Simon Frost <Simon.Frost@arm.com>, "draft-deshpande-rats-multi-verifier@ietf.org" <draft-deshpande-rats-multi-verifier@ietf.org>, Manu Fontaine <Manu@hushmesh.com>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Rats] Re: Call for adoption: draft-deshpande-rats-multi-verifier-04 (Ends 2026-04-24)
List-Id: Remote ATtestation procedureS <rats.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/y-fB0FrtAD0zJcjIDFbzfyLU3g0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Owner: <mailto:rats-owner@ietf.org>
List-Post: <mailto:rats@ietf.org>
List-Subscribe: <mailto:rats-join@ietf.org>
List-Unsubscribe: <mailto:rats-leave@ietf.org>

Guten Tag Henk,

Playing around with terminology is not at all helpful. Whatever term you 
want to use, RP needs to trust the Verifier. You just cannot avoid that 
fact. Multi-verifier increases that trust, as in the RP now has to trust 
*all* the Verifiers. My concern stands on technical merit, and changing 
the terminology just does not change anything.

As I and Manu said, it is the RP perspective which is important.

Also, see the other thread by Mark Novak, which is essentially 
emphasizing the RP perspective.


On 23.04.26 11:19, Henk Birkholz wrote:
> the authors, some significant part of the RATS WG (I assume), and 
> definitely me, scope the term "Trusted Computing Base" to *only* the 
> Attester, on which that term represents the set of Attesting 
> Environments that have passed remote attestation plus the set of 
> Target Environments that have passed remote attestation.

"I assume" is doing a lot of work here.

Liebe Grüße

-Usama