Re: [Suit] Information model updates

Russ Housley <housley@vigilsec.com> Mon, 24 May 2021 14:14 UTC

Return-Path: <housley@vigilsec.com>
X-Original-To: suit@ietfa.amsl.com
Delivered-To: suit@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EB8A03A2A56 for <suit@ietfa.amsl.com>; Mon, 24 May 2021 07:14:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.895
X-Spam-Level:
X-Spam-Status: No, score=-1.895 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TohB-mDzCOQn for <suit@ietfa.amsl.com>; Mon, 24 May 2021 07:14:25 -0700 (PDT)
Received: from mail.smeinc.net (mail.smeinc.net [209.135.209.11]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EF60A3A2A52 for <suit@ietf.org>; Mon, 24 May 2021 07:14:24 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mail.smeinc.net (Postfix) with ESMTP id C2DCB300B9A for <suit@ietf.org>; Mon, 24 May 2021 10:14:23 -0400 (EDT)
X-Virus-Scanned: amavisd-new at mail.smeinc.net
Received: from mail.smeinc.net ([127.0.0.1]) by localhost (mail.smeinc.net [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id D8BoEdX9g-Nf for <suit@ietf.org>; Mon, 24 May 2021 10:14:17 -0400 (EDT)
Received: from [192.168.1.161] (pool-141-156-161-153.washdc.fios.verizon.net [141.156.161.153]) by mail.smeinc.net (Postfix) with ESMTPSA id 8B626300AB0; Mon, 24 May 2021 10:14:17 -0400 (EDT)
From: Russ Housley <housley@vigilsec.com>
Message-Id: <D4D48CC5-E9A3-47D8-A012-BB2B8A982F38@vigilsec.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_3B7751C2-5478-401F-960C-4BC9F04F70DD"
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.20\))
Date: Mon, 24 May 2021 10:14:15 -0400
In-Reply-To: <933f01d750a5$4393bae0$cabb30a0$@reliableenergyanalytics.com>
Cc: Brendan Moran <Brendan.Moran@arm.com>, suit <suit@ietf.org>
To: dick@reliableenergyanalytics.com
References: <953A0DFE-D8C3-41B3-8AE3-53729378E00F@arm.com> <44670387-088C-4992-88FC-94B6F15752EE@vigilsec.com> <933f01d750a5$4393bae0$cabb30a0$@reliableenergyanalytics.com>
X-Mailer: Apple Mail (2.3445.104.20)
Archived-At: <https://mailarchive.ietf.org/arch/msg/suit/jqbsaofSixTuj1We14damMu70-s>
Subject: Re: [Suit] Information model updates
X-BeenThere: suit@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Software Updates for Internet of Things <suit.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/suit>, <mailto:suit-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/suit/>
List-Post: <mailto:suit@ietf.org>
List-Help: <mailto:suit-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/suit>, <mailto:suit-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 24 May 2021 14:14:30 -0000

Dick:

To read the article that you reference, I must join "The Energy Collective Group".  If you want us to consider your thoughts, you need to make them freely and openly available. Posting them here also has the desirable property that they get included in the mail archive of the WG discussion.

Russ

> On May 24, 2021, at 10:01 AM, Dick Brooks <dick@reliableenergyanalytics.com> wrote:
> 
> Russ, et al,
>  
>                I’ve raised an issue with regard to software supplier identification and verification as part of a software supply chain verification. I haven’t been paying much attention to the SUIT and MUD work, so I would be curious to know if this issue also effects your work in this area. 
>  
> https://energycentral.com/c/ec/we-cannot-secure-software-supply-chain-without-sbom <https://energycentral.com/c/ec/we-cannot-secure-software-supply-chain-without-sbom>
>  
> Thanks,
>  
> Dick Brooks
> <image001.jpg>
> Never trust software, always verify and report! <https://reliableenergyanalytics.com/products> ™
> http://www.reliableenergyanalytics.com <http://www.reliableenergyanalytics.com/>
> Email: dick@reliableenergyanalytics.com <mailto:dick@reliableenergyanalytics.com>
> Tel: +1 978-696-1788
>  
> From: Suit <suit-bounces@ietf.org <mailto:suit-bounces@ietf.org>> On Behalf Of Russ Housley
> Sent: Monday, May 24, 2021 9:55 AM
> To: Brendan Moran <Brendan.Moran@arm.com <mailto:Brendan.Moran@arm.com>>
> Cc: suit <suit@ietf.org <mailto:suit@ietf.org>>
> Subject: Re: [Suit] Information model updates
>  
> The IESG is waiting for a revised Internet-Draft to be posted.
>  
> Russ
> 
> 
>> On May 13, 2021, at 6:06 AM, Brendan Moran <Brendan.Moran@arm.com <mailto:Brendan.Moran@arm.com>> wrote:
>>  
>> I’ve made a number of pull requests to the information model. These should address the issues raised by IESG review. 
>>  
>> See here for more information: https://github.com/suit-wg/information-model/pulls <https://github.com/suit-wg/information-model/pulls>
>>  
>> Brendan
>> IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you. 
>> _______________________________________________
>> Suit mailing list
>> Suit@ietf.org <mailto:Suit@ietf.org>
>> https://www.ietf.org/mailman/listinfo/suit <https://www.ietf.org/mailman/listinfo/suit>
>  
> _______________________________________________
> Suit mailing list
> Suit@ietf.org <mailto:Suit@ietf.org>
> https://www.ietf.org/mailman/listinfo/suit <https://www.ietf.org/mailman/listinfo/suit>