Re: [SCITT] Call for adoption - SCITT Architecture

Dick Brooks <dick@reliableenergyanalytics.com> Mon, 14 November 2022 20:48 UTC

Return-Path: <dick@reliableenergyanalytics.com>
X-Original-To: scitt@ietfa.amsl.com
Delivered-To: scitt@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EB32BC14F74A for <scitt@ietfa.amsl.com>; Mon, 14 Nov 2022 12:48:51 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.895
X-Spam-Level:
X-Spam-Status: No, score=-1.895 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=messagingengine.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qs6muArtOgND for <scitt@ietfa.amsl.com>; Mon, 14 Nov 2022 12:48:47 -0800 (PST)
Received: from wforward3-smtp.messagingengine.com (wforward3-smtp.messagingengine.com [64.147.123.22]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id ADC11C14F743 for <scitt@ietf.org>; Mon, 14 Nov 2022 12:48:47 -0800 (PST)
Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailforward.west.internal (Postfix) with ESMTP id 435AE1AC2809; Mon, 14 Nov 2022 15:48:45 -0500 (EST)
Received: from mailfrontend1 ([10.202.2.162]) by compute4.internal (MEProxy); Mon, 14 Nov 2022 15:48:45 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-transfer-encoding:content-type :date:date:feedback-id:feedback-id:from:from:in-reply-to :in-reply-to:message-id:mime-version:references:reply-to :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm1; t=1668458924; x= 1668545324; bh=mheUlFm7KJu0s/KxjuGkeWv3wedpobTfXpTQwaNegeM=; b=E HqkoWc0A/XNDx/f5euoGmxZFh68q1sv0/XxMTBtnm3TLG/1L2IUd/TBj8GXGmK30 XKkWgiuuLDXGbVPdWBom9NcUnNrXOB580N8KFHlajEJZzqN/p2z6YgZcDtU3npVG L9nzVameihPQCgwwb2+MFg+fT6qd60/4iZqakJIlqHiYYQjrrn7YwXSu+vSakZ5G hh+ienmG0G8pBUNEY85i/nufeEu2CkVh2ZwN8+3qKRnHYc0T/LTaCg/xWnwXviHa bdi16o927iImpHCBaYK85Nk5zpWgiGFSL/oNH2izSr7e4SDiw6Vt0zX7V09du/KU SywcgtYD1X7RLH2+p1iNw==
X-ME-Sender: <xms:rKlyY2cPEFw8L0-n4h_pXpM8xA5rlzNkNHKOhQbYfKTEjEePGd4evQ> <xme:rKlyYwM1l23WNIoS8PdBfkZAns7jsyMiCzCC70NJbftpUEBl-0iQl0cGZO1XlnJIA R0fpmz5DzEOieLiIQ>
X-ME-Received: <xmr:rKlyY3icJvMWag3g51_ZaFK5mVKMLGaXLpNtmYgUHpIksuv9_JA9100>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvgedrgedvgdduudegucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurheprhfhvfhfjgfuffhokfggtgfgofhtsehtqhhgtddvtdejnecuhfhrohhmpedf ffhitghkuceurhhoohhkshdfuceoughitghksehrvghlihgrsghlvggvnhgvrhhghigrnh grlhihthhitghsrdgtohhmqeenucggtffrrghtthgvrhhnpeeileeileduieettefffefh gfehuedvfeduteelgfffgfeigeegvedutddtudegleenucffohhmrghinhepihgvthhfrd horhhgpdhrvghlihgrsghlvggvnhgvrhhghigrnhgrlhihthhitghsrdgtohhmpdgvihhn phhrvghsshifihhrvgdrtghomhenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmh epmhgrihhlfhhrohhmpeguihgtkhesrhgvlhhirggslhgvvghnvghrghihrghnrghlhiht ihgtshdrtghomh
X-ME-Proxy: <xmx:rKlyYz_bh8t6ZUxtOsQ_dXdEMc2WO24wo120Bo-uYDxR-fmRteF5Fw> <xmx:rKlyYyu4KrS55yMHoxIqr8bl1eP5uH70y0qvVocytINvozkjBd5X0Q> <xmx:rKlyY6GoMap4OPbLQeJRiGWsSZNpw6n1CWc2Va64WVVFgL8UibP8Fw> <xmx:rKlyY3VvIYozxBEexFlp51R1uDgpZVa-cTy1FAZq28O4zEPD1Cd6nDZcT0g>
Feedback-ID: i57d944d0:Fastmail
Received: by mail.messagingengine.com (Postfix) with ESMTPA; Mon, 14 Nov 2022 15:48:44 -0500 (EST)
Reply-To: dick@reliableenergyanalytics.com
From: Dick Brooks <dick@reliableenergyanalytics.com>
To: "'Smith, Ned'" <ned.smith@intel.com>, 'Eliot Lear' <lear@lear.ch>, 'Hannes Tschofenig' <Hannes.Tschofenig@arm.com>, scitt@ietf.org
References: <DBBPR08MB591573B5A97DADD9F0EEC2E9FA059@DBBPR08MB5915.eurprd08.prod.outlook.com> <3d32726d-03e0-7c29-1e2b-e911bab44a60@lear.ch> <94AABEC5-939A-48EB-B589-AAE7EDEA9F6B@intel.com>
In-Reply-To: <94AABEC5-939A-48EB-B589-AAE7EDEA9F6B@intel.com>
Date: Mon, 14 Nov 2022 15:48:42 -0500
Organization: Reliable Energy Analytics LLC
Message-ID: <12ca01d8f86a$7c644ec0$752cec40$@reliableenergyanalytics.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQEyw+s6Pycbh79xnBTGy5A8fET3GgH5x8diAipAIoivaiv24A==
Content-Language: en-us
Archived-At: <https://mailarchive.ietf.org/arch/msg/scitt/rA9mrm2TxCLb1OkTnOX4R9BFp2k>
Subject: Re: [SCITT] Call for adoption - SCITT Architecture
X-BeenThere: scitt@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Supply Chain Integrity, Transparency, and Trust" <scitt.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scitt>, <mailto:scitt-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scitt/>
List-Post: <mailto:scitt@ietf.org>
List-Help: <mailto:scitt-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scitt>, <mailto:scitt-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 14 Nov 2022 20:48:52 -0000

Ned,

We submitted an IPR disclosure for the SAG patent, relating to SCITT. 
https://datatracker.ietf.org/ipr/5683/

Do you think we should do the same for RATS?

Thanks,

Dick Brooks
  
Active Member of the CISA Critical Manufacturing Sector, 
Sector Coordinating Council – A Public-Private Partnership

Never trust software, always verify and report! ™
http://www.reliableenergyanalytics.com
Email: dick@reliableenergyanalytics.com
Tel: +1 978-696-1788

-----Original Message-----
From: SCITT <scitt-bounces@ietf.org> On Behalf Of Smith, Ned
Sent: Monday, November 14, 2022 3:04 PM
To: Eliot Lear <lear@lear.ch>; Hannes Tschofenig <Hannes.Tschofenig@arm.com>; scitt@ietf.org
Subject: Re: [SCITT] Call for adoption - SCITT Architecture

Dick Brooks pointed to:
>proprietary trust registries in use within the software supply chain today. (https://www.einpresswire.com/article/545051889/announcing-the-sag-ctr-tm-community-trust-registry-for-digitally-signed-software?r=pawKHGm9JeOss4tpbO), 
which cites IP.

On 11/14/22, 11:58 AM, "SCITT on behalf of Eliot Lear" <scitt-bounces@ietf.org on behalf of lear@lear.ch> wrote:

    I am in favor of adoption, and I would be willing to review the document 
    (as I have in the past).

    However...

    I would request an early IPR check.  We have had a sad record lately of 
    late disclosures.

    Eliot

    On 14.11.22 12:18, Hannes Tschofenig wrote:
    > Hi all,
    >
    > Following the positive feedback at the IETF SCITT meeting in London last week we want to start a call for adoption of the SCITT architecture document.
    >
    > Here is the document, which serves as a starting point for future work in the group:
    > https://datatracker.ietf.org/doc/html/draft-birkholz-scitt-architecture-02
    >
    > Please, provide your feedback on the mailing list by *November 28th*.
    >
    > Ciao
    > Hannes & Jon
    >
    > IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.
    >

-- 
SCITT mailing list
SCITT@ietf.org
https://www.ietf.org/mailman/listinfo/scitt