Re: [SCITT] Call for adoption - SCITT Architecture

"Smith, Ned" <ned.smith@intel.com> Mon, 14 November 2022 20:52 UTC

Return-Path: <ned.smith@intel.com>
X-Original-To: scitt@ietfa.amsl.com
Delivered-To: scitt@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5E968C14F743 for <scitt@ietfa.amsl.com>; Mon, 14 Nov 2022 12:52:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.094
X-Spam-Level:
X-Spam-Status: No, score=-2.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=intel.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sdVl5IWSSmrE for <scitt@ietfa.amsl.com>; Mon, 14 Nov 2022 12:52:33 -0800 (PST)
Received: from mga11.intel.com (mga11.intel.com [192.55.52.93]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4B047C14F740 for <scitt@ietf.org>; Mon, 14 Nov 2022 12:52:33 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=intel.com; i=@intel.com; q=dns/txt; s=Intel; t=1668459153; x=1699995153; h=from:to:subject:date:message-id:references:in-reply-to: content-id:content-transfer-encoding:mime-version; bh=KIZR0PrRR6ZMW2WTwM8p1+Wdp72XNXBdFHl5wwawgsc=; b=mGFoI4FBwPC2fNiV/hhn7tIxo+Df1ovF5h32782DLWLwlU+yjTDNEpAj YJiFvRfd1doR1JMEZj0+BLRAPAefWlz+HD18yaWWRmxR0i/kPnX5MX2VH ekcYJ9RV3Kc3xs+q7X8ygWqu0Rr4O8AC2TEZrcZA16vjwpgIvJFN6C9Dw rzvwtHd3OAHXk2uMXSOxJZiENCas3PADMw0Xe+7y+qF4oq6rB5xROS9te QiPXTEfpyDb189OUykQ5XQQHpf0PWoW6lXuRXZJUc12FY/Sw/D+V0TcXu j/vin7e7f3rN0NYsEKurGzbI56w7Nq/HA9L0WGqcrdW9dHNA8pvNN4rx5 g==;
X-IronPort-AV: E=McAfee;i="6500,9779,10531"; a="309708322"
X-IronPort-AV: E=Sophos;i="5.96,164,1665471600"; d="scan'208";a="309708322"
Received: from orsmga008.jf.intel.com ([10.7.209.65]) by fmsmga102.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 14 Nov 2022 12:52:33 -0800
X-ExtLoop1: 1
X-IronPort-AV: E=McAfee;i="6500,9779,10531"; a="669815874"
X-IronPort-AV: E=Sophos;i="5.96,164,1665471600"; d="scan'208";a="669815874"
Received: from orsmsx601.amr.corp.intel.com ([10.22.229.14]) by orsmga008.jf.intel.com with ESMTP; 14 Nov 2022 12:52:32 -0800
Received: from orsmsx602.amr.corp.intel.com (10.22.229.15) by ORSMSX601.amr.corp.intel.com (10.22.229.14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2375.31; Mon, 14 Nov 2022 12:52:32 -0800
Received: from orsedg603.ED.cps.intel.com (10.7.248.4) by orsmsx602.amr.corp.intel.com (10.22.229.15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2375.31 via Frontend Transport; Mon, 14 Nov 2022 12:52:32 -0800
Received: from NAM10-DM6-obe.outbound.protection.outlook.com (104.47.58.109) by edgegateway.intel.com (134.134.137.100) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.1.2375.31; Mon, 14 Nov 2022 12:52:32 -0800
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=TonRCKG/SK1TEzpdisqezNehNwsliNnLMSI6OHL2SzDuhkQ2cu6H+YL7IKKcEpVI5/Roolo/6jaFZHjGYsBslKF1mWPR6pu/8RF3LENQsRlKYXaoPt35OaovItLZ4W3p5tqTrnDYk7kUqJqlYnlGlHOoF12TnZaSjg0rbxQC4YxbDYY6vBGsDOy2EKASAN0dCeiGiPmJk6vTpJeba+rB2C104/qmHT9r6g7t2Ojjl4/alB1HakxInJeXQ7OycnYw+4M2vbdgE8SdcgwmPPuSagNfDl3NCL6kGX7XIiTd+bz28Av/sOzZ/9FHFJJfo/kPOd06HhEVbUoXAI7aoQ/9WQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=KIZR0PrRR6ZMW2WTwM8p1+Wdp72XNXBdFHl5wwawgsc=; b=MV5YsxydvBShrM6jYZp00wQgTusu4SECnmXCJXWeaeykvKBxWgdac88p6/TixRdcny8dPI+THlXIIxQFzZ5hWDvVRp2Ero8imJ03EzZS2PzZ4VMT5qM+zCbNhrAtoof/CKiFpFdFm2wZZLvIryXtJDXfbjxd6bNEstQW+BTOucnrJpi80KS7Rv0CavcHFTDQ9yuKDMVpDdPpN0KZguDsVjQPOvwyQVmXxb8/4HhH4+QYH6+vZhUhPQZB2gAESgTR0Fg8o++pLVJkOhAi2YHVFyiNm7/7Bh+q8lckGopvHtVoju8wS4KRtzWexVdpvLq6oIIqJM8+zP43N80lkH0oqQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=intel.com; dmarc=pass action=none header.from=intel.com; dkim=pass header.d=intel.com; arc=none
Received: from CO1PR11MB5169.namprd11.prod.outlook.com (2603:10b6:303:95::19) by DM4PR11MB5996.namprd11.prod.outlook.com (2603:10b6:8:5f::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5813.13; Mon, 14 Nov 2022 20:52:30 +0000
Received: from CO1PR11MB5169.namprd11.prod.outlook.com ([fe80::a348:c554:f45d:2e75]) by CO1PR11MB5169.namprd11.prod.outlook.com ([fe80::a348:c554:f45d:2e75%7]) with mapi id 15.20.5813.017; Mon, 14 Nov 2022 20:52:30 +0000
From: "Smith, Ned" <ned.smith@intel.com>
To: "dick@reliableenergyanalytics.com" <dick@reliableenergyanalytics.com>, 'Eliot Lear' <lear@lear.ch>, 'Hannes Tschofenig' <Hannes.Tschofenig@arm.com>, "scitt@ietf.org" <scitt@ietf.org>
Thread-Topic: [SCITT] Call for adoption - SCITT Architecture
Thread-Index: Adj4GkNnAj6pDrqoT42mv3OdDr0QSAASR9eA//97goCAAJKuAP//evKA
Date: Mon, 14 Nov 2022 20:52:30 +0000
Message-ID: <178BA8FA-6B63-451B-A56F-ED1F75B9E3B8@intel.com>
References: <DBBPR08MB591573B5A97DADD9F0EEC2E9FA059@DBBPR08MB5915.eurprd08.prod.outlook.com> <3d32726d-03e0-7c29-1e2b-e911bab44a60@lear.ch> <94AABEC5-939A-48EB-B589-AAE7EDEA9F6B@intel.com> <12ca01d8f86a$7c644ec0$752cec40$@reliableenergyanalytics.com>
In-Reply-To: <12ca01d8f86a$7c644ec0$752cec40$@reliableenergyanalytics.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.66.22102801
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=intel.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CO1PR11MB5169:EE_|DM4PR11MB5996:EE_
x-ms-office365-filtering-correlation-id: e96180b0-12f1-48cf-3341-08dac6822594
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CO1PR11MB5169.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(376002)(136003)(346002)(396003)(366004)(39860400002)(451199015)(122000001)(38100700002)(82960400001)(5660300002)(41300700001)(33656002)(76116006)(38070700005)(66946007)(91956017)(66556008)(64756008)(66476007)(8936002)(71200400001)(316002)(8676002)(66446008)(6486002)(478600001)(966005)(186003)(2906002)(6506007)(40140700001)(110136005)(83380400001)(86362001)(26005)(2616005)(6512007)(36756003)(53546011)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <93D50241461D484F8C31EC9285E151D3@namprd11.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CO1PR11MB5169.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e96180b0-12f1-48cf-3341-08dac6822594
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Nov 2022 20:52:30.4235 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 46c98d88-e344-4ed4-8496-4ed7712e255d
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: YdQUaj9aOAID/rij81p8VnE5XIGMNad/I9ZDshaoeFmFJh3NgyaS6az9NJIZyHSg5f3GGSlXnP0mc3fWdyEYSQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM4PR11MB5996
X-OriginatorOrg: intel.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/scitt/rt1P6HsXwQ19wQurS-zLAv12OP8>
Subject: Re: [SCITT] Call for adoption - SCITT Architecture
X-BeenThere: scitt@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Supply Chain Integrity, Transparency, and Trust" <scitt.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scitt>, <mailto:scitt-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scitt/>
List-Post: <mailto:scitt@ietf.org>
List-Help: <mailto:scitt-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scitt>, <mailto:scitt-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 14 Nov 2022 20:52:37 -0000

Dick,
Yes, if its relevant. I'm not permitted to look at patent material so I can't help determine if its relevant or not.
-Ned

On 11/14/22, 12:48 PM, "Dick Brooks" <dick@reliableenergyanalytics.com> wrote:

    Ned,

    We submitted an IPR disclosure for the SAG patent, relating to SCITT. 
    https://datatracker.ietf.org/ipr/5683/

    Do you think we should do the same for RATS?

    Thanks,

    Dick Brooks

    Active Member of the CISA Critical Manufacturing Sector, 
    Sector Coordinating Council – A Public-Private Partnership

    Never trust software, always verify and report! ™
    http://www.reliableenergyanalytics.com
    Email: dick@reliableenergyanalytics.com
    Tel: +1 978-696-1788

    -----Original Message-----
    From: SCITT <scitt-bounces@ietf.org> On Behalf Of Smith, Ned
    Sent: Monday, November 14, 2022 3:04 PM
    To: Eliot Lear <lear@lear.ch>; Hannes Tschofenig <Hannes.Tschofenig@arm.com>; scitt@ietf.org
    Subject: Re: [SCITT] Call for adoption - SCITT Architecture

    Dick Brooks pointed to:
    >proprietary trust registries in use within the software supply chain today. (https://www.einpresswire.com/article/545051889/announcing-the-sag-ctr-tm-community-trust-registry-for-digitally-signed-software?r=pawKHGm9JeOss4tpbO), 
    which cites IP.

    On 11/14/22, 11:58 AM, "SCITT on behalf of Eliot Lear" <scitt-bounces@ietf.org on behalf of lear@lear.ch> wrote:

        I am in favor of adoption, and I would be willing to review the document 
        (as I have in the past).

        However...

        I would request an early IPR check.  We have had a sad record lately of 
        late disclosures.

        Eliot

        On 14.11.22 12:18, Hannes Tschofenig wrote:
        > Hi all,
        >
        > Following the positive feedback at the IETF SCITT meeting in London last week we want to start a call for adoption of the SCITT architecture document.
        >
        > Here is the document, which serves as a starting point for future work in the group:
        > https://datatracker.ietf.org/doc/html/draft-birkholz-scitt-architecture-02
        >
        > Please, provide your feedback on the mailing list by *November 28th*.
        >
        > Ciao
        > Hannes & Jon
        >
        > IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.
        >

    -- 
    SCITT mailing list
    SCITT@ietf.org
    https://www.ietf.org/mailman/listinfo/scitt