[Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-up of meeting 122 presentation (Formal proof of insecurity of Intel's RA-TLS and draft-fossati-tls-attestation)
John Kemp <stable.pseudonym@gmail.com> Fri, 16 January 2026 18:55 UTC
Return-Path: <stable.pseudonym@gmail.com>
X-Original-To: wimse@mail2.ietf.org
Delivered-To: wimse@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 97331A8BA9F9 for <wimse@mail2.ietf.org>; Fri, 16 Jan 2026 10:55:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RTElvV7A8Pbf for <wimse@mail2.ietf.org>; Fri, 16 Jan 2026 10:55:10 -0800 (PST)
Received: from mail-qk1-x736.google.com (mail-qk1-x736.google.com [IPv6:2607:f8b0:4864:20::736]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 81EACA8BA9DD for <wimse@ietf.org>; Fri, 16 Jan 2026 10:55:10 -0800 (PST)
Received: by mail-qk1-x736.google.com with SMTP id af79cd13be357-8c2c36c10dbso278255585a.2 for <wimse@ietf.org>; Fri, 16 Jan 2026 10:55:10 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1768589710; x=1769194510; darn=ietf.org; h=references:to:cc:in-reply-to:date:subject:mime-version:message-id :from:from:to:cc:subject:date:message-id:reply-to; bh=MSnEelVMd390S6/MSuaRK3HwpYZ35KT29qdeiVPqjog=; b=Amg6ElaQqpxkb820aHhiia+/wVBGzo8bMo4JyxcOG1sTw1wSRvPC7vbMm4+L+shKKx Mq0Vwo0MKBQEA2Y6XLVnkvcn2UjANO0WsBsSGqR9Vaa1mjn0wR64rOJ2qISgOcJnYTMo 48uR/6GeZC6Dxc/jSPT47Kkk8JFvF0SyiDTV2WsGZyUQaqDxqLe2XVgJiHyPBRf1Ow5O 8WdNQMYh3UpISaJOWVTgygi4b5iYWiX69eOBzAcOrtvEcVFLn3mVDathyDRmIbT9urcs 07LX2aLkULG8mpHwzAM1KZaLbHbMMK6mY9L64ZTf5f6NQA5kHOjCMUgGaDACK663XpQ9 It3Q==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1768589710; x=1769194510; h=references:to:cc:in-reply-to:date:subject:mime-version:message-id :from:x-gm-gg:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=MSnEelVMd390S6/MSuaRK3HwpYZ35KT29qdeiVPqjog=; b=vVy/0kah+lwk3xRRXN8wxqURL0HbaZBp93b7h0JwxT68d8r34mB0EOchcTMOv32tH0 vnnlrbRsC5vQ1fKbNZ2rmscpu7Ni5ggoIYKPwoPIokplzMa0aCbWo27IWXF2+EX9Y5Nt Qt6nUSo/m4yv3xAbh/thB6CxEY5oBjc6x12/nXdMbK41DsmrsEGGft1zwiyYWBVkcjbc 8UWw7bNlUw2wwJ0sD/5MSAeV2tQulvSLfm/3CcJAC8F117rhAa9ziZH6Htc3m85s8JTJ X1tCBNYze7zfhqjGlWf2Pyt2dTusws3I1JpR3uPYdiVMZJ9zO9Nus11pD29S8rUJ0CtS KeOA==
X-Forwarded-Encrypted: i=1; AJvYcCXxKDgFhkLggCy3hh2wrCR1VtELiK3ztIwqd/2mDOGxNGurjof+TUpP3914+/Ii528bNv7hgw==@ietf.org
X-Gm-Message-State: AOJu0Yz/tHxIARw/Aya0SW0JzZycTScwvJWC0Te2ZkEi2GdVduibOWgA 6FqHGvBWlKTVYbpMvFHPbJ8b5zRC9wWy0S8ua+nrWYbqcKj6L2cdAHOi36s4LiRM
X-Gm-Gg: AY/fxX6mVovmfiPmfNKupZVyBlwGTm9hEqPMgsbZOrtuGPFTHJcJQAqNgHllb63N96k abBlHDYfrsfWnJLsRHUJvrdDMPwofsOPHwkeIgekUVGsbJU5n7nDDhd+MX3YjoYF//W9nlMN7wd TQBcuUtLJHoIV+lZUOhRrkAgQm2sOg/5Yr+d8ljkSpV7tb8tWSfE7ZiNP/9rUUbMvfg5ABprppx qXh4py+5jWYs8dckE5Vfwi5sKKdwVugwrEyf+xcoNFIef370+xbiuwWIelZCZiy/afGeMItNdlT TYU8omBlBp/17btNGTWw2doamMBKFdpoSxfsEBl9G/3nh5l8jTOyYxHmtnBT1tZMoLbF20I8aOz ZJxBvbIUbxpqkAfpuxZ7z74sKrAh6LtRdTTBT90GV1UIWf/Wi/9pBi43JmmntvqwO75FvK+ykMq Xx6DzGHTUA8YDtZRlVxAxMvDx6utpZ/55HdQ==
X-Received: by 2002:a05:620a:3199:b0:8b1:5f62:a5d5 with SMTP id af79cd13be357-8c6a6789902mr571746885a.62.1768589708463; Fri, 16 Jan 2026 10:55:08 -0800 (PST)
Received: from smtpclient.apple ([67.246.88.47]) by smtp.gmail.com with ESMTPSA id 6a1803df08f44-8942e6c6e87sm31354586d6.38.2026.01.16.10.55.06 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Fri, 16 Jan 2026 10:55:07 -0800 (PST)
From: John Kemp <stable.pseudonym@gmail.com>
Message-Id: <92BBB51B-5F89-416C-8684-F0A0011D84F0@gmail.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_109E96C8-4023-4F56-8BC1-453CCF0D3E8F"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3826.700.81.1.4\))
Date: Fri, 16 Jan 2026 13:54:56 -0500
In-Reply-To: <cb5ce7ff-6e7c-4891-a1a6-0e5e8d706184@tu-dresden.de>
To: Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de>
References: <CAHu=PL2n26wwEtEECb1VqzshJBTJ+chhbcKTNbLeABmM_+eymg@mail.gmail.com> <CBDD5425-01C7-4A2D-97F6-BF66C0E5A0FE@gmail.com> <CAOgPGoAoserfxs4DjMUpexvSfSxnWUzTedd1MPyc74+QTUC1_Q@mail.gmail.com> <cb5ce7ff-6e7c-4891-a1a6-0e5e8d706184@tu-dresden.de>
X-Mailer: Apple Mail (2.3826.700.81.1.4)
X-MailFrom: stable.pseudonym@gmail.com
X-Mailman-Rule-Hits: max-recipients
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-size; news-moderation; no-subject; digests; suspicious-header
Message-ID-Hash: OWC7KTYHV3PZUODS6UDQNT77AN2MV72L
X-Message-ID-Hash: OWC7KTYHV3PZUODS6UDQNT77AN2MV72L
X-Mailman-Approved-At: Fri, 16 Jan 2026 15:12:05 -0800
CC: Joseph Salowey <joe@salowey.net>, wimse@ietf.org, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, Manu Fontaine <Manu@hushmesh.com>, Nathanael Ritz <nathanritz@gmail.com>, Henk Birkholz <henk.birkholz@ietf.contact>, Yaron Sheffer <yaronf.ietf@gmail.com>, Justin Richer <jricher@mit.edu>, Pieter Kasselman <pieter@defakto.security>, wimse-chairs@ietf.org, Sorin Dumitru <sorin@returnze.ro>, rats@ietf.org, seat@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-up of meeting 122 presentation (Formal proof of insecurity of Intel's RA-TLS and draft-fossati-tls-attestation)
List-Id: "Secure Evidence and Attestation Transport (SEAT) WG" <seat.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/seat/L0Ety5jLaa3CMoBb66xy0O079Ag>
List-Archive: <https://mailarchive.ietf.org/arch/browse/seat>
List-Help: <mailto:seat-request@ietf.org?subject=help>
List-Owner: <mailto:seat-owner@ietf.org>
List-Post: <mailto:seat@ietf.org>
List-Subscribe: <mailto:seat-join@ietf.org>
List-Unsubscribe: <mailto:seat-leave@ietf.org>
Thanks Usama, Just addressing your comment/change on my PR: > El ene 15, 2026, a las 7:52 p.m., Muhammad Usama Sardar <muhammad_usama.sardar@tu-dresden.de> escribió: […] > WIMSE folks seem to have settled at some definition. Looking at the current definition of attestation of WIMSE in PR [1], I have proposed a small edit there. > > One nit: Definition says "Attestation in WIMSE is intentionally defined quite broadly" but I don't see what exactly is broader than RFC9334. > What that specifically means to me is that the WIMSE definition is broader than the defined use-cases specifically mentioned in RFC9334. It includes the SPIRE example that is mentioned by Arndt on my PR, and also the existing discussion of those mechanisms in the architecture document itself. > What is additional to RFC9334 needs to be precisely mentioned explicitly here. > > Attestation of RFC9334 also does not rely on any specific communication protocol. It can be used with TLS, EDHOC, IKEv2, SSH etc. So you don't actually need to say that part, and in my proposed edit, I removed that part. I can live with that change, and responded similarly in the PR discussion. > What exactly do you mean by "implementation"? Is it meant to include software-based attestation vs. hardware-based attestation. No, not specifically. And I might argue that _all_ implementations are actually software implementations, even if the update mechanisms for the software may be different in some environments ;) > My proposed edit is under this assumption. If there is something in addition to that, please specify that to disambiguate as cleanly as possible. The architecture may be implemented in different ways. That’s all. I don’t think the additional statement about software is required, since that is already allowed by the existing text. > Now, the definition is broader than attestation of RFC9334, i.e., attestation of RFC9334 remains explicitly in scope. > This remains my biggest question - whether to reference RFC9334 _at all_? If RFC9334 was intended to specifically limit implementations to those using some kind of trusted hardware, then I believe we should not reference it at all. Is there a RATS expert here who would care to comment about that? However, the broad definition of attestation currently in 9334, and the entities described therein, is _still_ relevant for WIMSE — at the architectural level at least. I’d love to reuse it, if someone can confirm that RFC9334 doesn’t limit its text to trusted hardware attestation only? Regards, - johnk [1] https://github.com/ietf-wg-wimse/draft-ietf-wimse-arch/pull/111
- [Seat] Re: [WIMSE] Follow-up of meeting 122 prese… Muhammad Usama Sardar
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Pieter Kasselman
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Muhammad Usama Sardar
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Arndt Schwenkschuster
- [Seat] Re: [WIMSE] Follow-up of meeting 122 prese… John Kemp
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Muhammad Usama Sardar
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Yaron Sheffer
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Muhammad Usama Sardar
- [Seat] Re: [WIMSE] Re: Follow-up of meeting 122 p… Henk Birkholz
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Kathleen Moriarty
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Muhammad Usama Sardar
- [Seat] Re: [Rats] Re: [WIMSE] Re: Follow-up of me… Justin Richer
- [Seat] Re: [Rats] Re: [WIMSE] Re: Follow-up of me… Kathleen Moriarty
- [Seat] Re: [Rats] Re: [WIMSE] Re: Follow-up of me… Muhammad Usama Sardar
- [Seat] Re: [Rats] Re: [WIMSE] Re: Follow-up of me… Muhammad Usama Sardar
- [Seat] Re: [Rats] Re: [WIMSE] Re: Follow-up of me… John Kemp
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Manu Fontaine
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Nathanael Ritz
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Manu Fontaine
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Mandyam, Giridhar
- [Seat] Re: [Rats] Re: Re: [WIMSE] Re: Follow-up o… Kathleen Moriarty
- [Seat] Re: [WIMSE] Re: [Rats] Re: Re: Re: Follow-… Joseph Salowey
- [Seat] Re: [Rats] Re: [WIMSE] Re: Re: Re: Re: Fol… Muhammad Usama Sardar
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… John Kemp
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… Muhammad Usama Sardar
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… John Kemp
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… Nathanael Ritz
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… John Kemp
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… Paul Wouters
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… Paul Wouters
- [Seat] Re: [Rats] [WIMSE] Re: Re: Re: Re: Follow-… Justin Richer