[Teep] Re: Gunter Van de Velde's No Objection on draft-ietf-teep-protocol-24: (with COMMENT)
Hannes Tschofenig <hannes.tschofenig@gmx.net> Thu, 26 February 2026 18:55 UTC
Return-Path: <hannes.tschofenig@gmx.net>
X-Original-To: teep@mail2.ietf.org
Delivered-To: teep@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 9C529BEF524A; Thu, 26 Feb 2026 10:55:07 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.795
X-Spam-Level:
X-Spam-Status: No, score=-2.795 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmx.net
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7FLOMZLtaAPM; Thu, 26 Feb 2026 10:55:07 -0800 (PST)
Received: from mout.gmx.net (mout.gmx.net [212.227.15.15]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id AC393BEF521D; Thu, 26 Feb 2026 10:55:06 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmx.net; s=s31663417; t=1772132104; x=1772736904; i=hannes.tschofenig@gmx.net; bh=hlfF2WyBfyN8xlZiwoPMby51aX80UnMqPK6hHLesxGk=; h=X-UI-Sender-Class:Message-ID:Date:MIME-Version:Subject:To:Cc: References:From:In-Reply-To:Content-Type: Content-Transfer-Encoding:cc:content-transfer-encoding: content-type:date:from:message-id:mime-version:reply-to:subject: to; b=R9Eph+slaFPXnCubFC4fnYvennK8enR+Oms+dELrc0ZlFMgFvoNu/s2bykXE79y/ yHEdvyZs4cc9n5honxFZ4kXNwm5sselLHnI9o+pbMAQgR1d7rzGjXR61tLP0o1QZR vh1Fc/o9jKNYhmFzPUW1hRyZwVjCIJ58iZpL10PwrmM3kDZJgzTPX8xzNBI3BbzZL nICCQZKV83GGtbncc1eTWXixex8a6CA0IQ5UAVfYoP/ZLemDnCUtjmB3Tc3HKQe+8 EUKsLAp2FbFCEPP5JKM96l9gpcUcHz16/OthHiqKOpH1DyuJSQDp/sR74CGRybUDL TKNk6lYtYiQ2FVzGxw==
X-UI-Sender-Class: 724b4f7f-cbec-4199-ad4e-598c01a50d3a
Received: from client.hidden.invalid by mail.gmx.net (mrgmx005 [212.227.17.190]) with ESMTPSA (Nemesis) id 1Mr9Fs-1vJbx81BEk-00fxdb; Thu, 26 Feb 2026 19:55:04 +0100
Message-ID: <454ed146-e64d-4528-8805-69e8ef936969@gmx.net>
Date: Thu, 26 Feb 2026 19:55:06 +0100
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
To: Gunter Van de Velde <gunter.van_de_velde@nokia.com>, The IESG <iesg@ietf.org>
References: <177133611375.1037717.16767812691531078876@dt-datatracker-6ff7c68975-7k42g>
From: Hannes Tschofenig <hannes.tschofenig@gmx.net>
In-Reply-To: <177133611375.1037717.16767812691531078876@dt-datatracker-6ff7c68975-7k42g>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: quoted-printable
X-Provags-ID: V03:K1:CBCSEJZktYGkk6mXcb7Ijg7/bAcakWO0VZ3E1uLSGWcacWaeU2C Uj+xySJdWVDuIXlwANFhFOpHHd2fLF86pf2RR9rmS9DEePwywEO3GY8ywWAh5KJX84TK3K9 0qMlj1x8zhpqCJBVj44XHs0ZIhWOErnzR3YaCN0eAuHNZhm7xrgt7bpJpAqGBeN/iIA97Wb Y/vwBQsdUbGLxORe22RYQ==
UI-OutboundReport: notjunk:1;M01:P0:QdQaq3bL140=;11Rmau5yijG371N0V53TncuqMYI yUHlLZP+Zj6zT2iA0fVhT00St6mRsmJBFfjdPcAhXidoYXKXLRZNMEMWDxNT/lBBqYWjbZv/S ROp4UjenF+Kn7AQ6p/WOVtwJu0fubcGxpbqGlSKIqL8Bk8kSm235gt28VNaEiILL6NLzxmhry PnfNDSmXp+Xqz+oINUygOKD1UK+BwBsmgx1KmBJGssoBWUbnRViBf5H4CIiVhv2FkmV7Ssbe9 nUsEKtke0HDw7EHbCJEIlr3jdfm1VAYp+ZNlEuWmXoxx/9AHjcVJjQBaii9V6bvGVp27FkpIt YGIlLg4l0WfbXttoJRtMvwzWKyaJnKhrwsa1TuLDe7N/XWx7L4/b+Tw9aJEnzubndUkUd8yza PDk2t2z5RBr9YCxJ/yqhxYU5JTNCamR+ESynen5sT6a5U+GD1h6PCLIbtWFH/MbL31nImaf8T rYUfGsX5PKsExySi6dYqiVL1+oVraJp4K5Cn0SXovu2G9D4GGMqTsfGpU1tZ8tYLkIVvlKZbb AxbH6khEfqNJ0N05686DQJbC3zoCZpohCb19Fo8QCyEjWz/d39IiBi4PNRm4pfcUj5cXHHVSy 5CoYq7N4bASgdnYKkFqpMx+/I+iy38HjeCxkeaveNz76Ol/051uYYVyEuN1Nv6++lRE4DtJIJ bkeYbABjrLmmX0Dae1OIikhhhc0sssCi/g1V/g2tKUyOOgdGhonmwmj3C6BQTTyRLX4mRqQK5 V3Yfa98bA+KM0NYy95jdiNY1JNW2zkemlC1x3m7zyW5OSh+2Oh9bHrHgaqO6mFhyXT7OqlKXZ ThVc0oS3A4ztnVNff9W6TnDeJsN4M2ws0tl3UvT/p9Q7//IbuVPOCCBKulrMi9FOSmJTNMLTc 1Cj1mnXkyBselA8PywZeeZWvOiKEmZVU9Jrupm5fnb6UrMrQ9u5mHaBu7XxUi6ZoyZH/9HRyC fT1+iZz6gSoqCkxXFF8KReEvQpPNBuCm7lgnBG5g/YQujMPu0mNDT9irFThyti/tH+3y60Doj uz+MYhdE2aPyFbl0EdT2LFkLpCT+mixX5JSEGm8FidWGD9Bw+48QWZGtTJ5IAouce44vYpe4Z edn4tmuDfFp0+O9K50FuwkWAJGnp2QhuaRKpyZsMwzMTCI6T2pm+x5skeJXB2sk87iW7nnKh9 JUxeWsIJfb4XERcM4+8CZlpMtMMmxrBuH+uYhnOqm02BQWstpJ9P+ez7cqWOiAQ5ecsxXSwZ6 lQjCoRvXjIor8D2YUaRHmMz8HVzhBc+A781SpoeIIrByvxwqK0oj01spbLOTSbc59kBI7D98h SX1BVW4NBTNu0g6b2kTd69EQp8JVXZBDTO02lwEh76TvJcHQzDCURj7ASmag9aWaE2iAAGZPs V66XNyKKHePNaUFq+euXvwkleAdfwVKYyPtDRPEfU78sX41ZM4sGrkgXLs8ePhWY/cIT9BW43 d4xAcEkEIxEDzvYL1PeQFbAqcbzMaLZlITyn6s6zvHGRXLgiUJIAnyNK3wnPrpa7llPpMXBZ1 2Hqn9sAbL/XhI/y+IX9uHlQ3Nvp8pukQGgIcEQ8ihlsPEBMuihf5V1oOayBSbDkV2DYOlUP2X tXFIB+NlhPsplZouhDAkrtl2tJ1Gocd6M1Ufujde+N6O6g45U+zKw7L+OxOoeFH0C327wih9+ ReFw7r3fKTZBXTW0FcIGj4/vHOIqU6x/D8fL3aQd3y6yE4LYa/PBsw7XCk+pjR5jZNPZYg9vo 3TPl3g4rI36l+2CloZrpdFQGFynu/H6wlXSETfyya5jfXbbgtOjaxHuOigjLPenMg1n2Rxadh VR71lRmdodu41iz2Ogml6qa/P1k5YPyMV4n6kLscV3LRkCS4Ss5cPu2IbNBKBtTav4zvj9Kjt KlQVEwf2F402C1+nuNvgrDghbYyMk6MNUxHRoaPqUfX9P3TSy1C4qXGSl9Mh5whcoqueIZCxt QX9lAq9QJOAtiBf8uTbw3plpW6kL/PA+LZg0/hzDh/cQDBvtbsMHQRvY9cNd7zTbS8gqQi1R+ 493Dqq98y5B+LPdjEvjf3Cpixb5SeDUpf9WOJuTiP0hGZ0VzOqunUmizUMsV5Nc3kYSHM5ypw fyIZQkJYBtzjqLsd748m8bVDYkVmXJX3YQTdF3PhCmvLBL63Hx7WN7LH3iNXEqF26k3Jvfjzs ssgAelsq9O70mDGH42MavB97b9XqGrtc7ckULVdzqsowwdUJwHXJnZzYd/4tXDSDFJjtVsShp shPSBY8ZvnO84ERmW0a4Mjc3ehEW/DdPkGUHvhrxdkDLry5NbgzKw4Lhi2C3hWBKJytCQOFBD gHExq01a1l79fGZfE6hkrM1WEbdws+/DBmPWmwEhRFc8muPXQHXEQz8XRqHRKwe79UCfy7/7k nwt1/g7+yQ5r4JSEaRsFQLnucKxsqm839WiLpW5jKBWFO8tGUzY8lNh9Cz3+Qu3/I5n7iguzR qUgWCXVgi93FgR1CF7whk0taYWZcaA0YvOGO4q/Y432/7hMcRkSsupyC0yqr39PYlGNK0YvMP yWPFadHvGEH1a+bmItqANpn66y0ZH+w9XxwfJ5Ow+pzAVGNsXNkVTZrmhIb82WPIbypVCQBAJ 3XdpRv3INYReRSolCKOiCAMGAGkorIt5BXXzQbMIQuTIVRZFb5xbrvm8EEsvJ70aFPBfm0Jce 0beGaFRRYwaWe7NgeBEejUnFfgRADTK/FK6o+oI8eACCfqhJv11cg3Zt+pHVpQ2Sywj8sxwV+ dvhZxIYSUPVSVEBISrFsB8KT9lNg1JRRmSX9VE3JBx0Q0nfJpX6+BrWzRG37pAH1wrrMqkK6h znyHlPUX0yGdgHjy0+Xjsjxs/Yz6DNeXGNOZzVJLEwlfvuyJo6cAivfiVF4Ck9AFufrnPsn7j /YqPaVs8CoZGx9HsasgNSlW0LdwxD22xC0s5m8HmNebZRqUF2oO1tmpgR2dOKfJz5mCpiZps3 Frvlo5WXo8FcjXQ5ny8lgCMcTLk3Eg14lhyDlUsJirx3O6BHyL+2t+siDp8tVhWdJUwUaJ/IN M7msKDLuWXx62+4ZhJPVnRCqVWSxy/TowbDDnQ5p7XVFVmzU6WOOBgll7GlF2oZ6ZCh7BR1h0 GfoAdnzGwZGdM3dmboh8g653JR++NlAlVgMHOXFum6OXPaf/KRkzvcUHtNN7XsT2/g4mm7oTi PRNEL6FClblmDo2EfRZEKz3TXFoLnJ7u+xXeANHCVzRiAljzLRMHjooNNGzOcraDE3wxDuVbP f+PfT8rbin6gGw+ezKcHjSgceaQUHqP1Zvvl7cfQGglVMMKaJ1B2RzYAwew/qizOLVlW7m+E2 eMsTSroudPiY0IBEzYOq9WyJss76d7i7FIgOEtfU/bwd95mne+HSzaAmS8yBx1cGBDrjVBn/P CcV3F6ksuCxWq0MkKlsgO5EHewa7iF49e1jmMKTTSWI6igKxP/+doljYwB1G2fj/JNJ0/R+dR Vj+6nFN42khmoQ8RhU+gjh7uMoiOXOPO3jWUBOjZPDlMIuHNsN2Z9MWrIZzlUoYFfIjDIqpu4 Pejrfn8dSbR/8++6t3WoRT1JCp/NgsCkVJb1LNYMNFFYMjI/cv7JIgI3PaIn2seIaXpwuPpTw 854yOp5xGoO2HDRXBLFc6Ga7b3RqpaRFAY4hfh8z9ugF3DWuPq7kmZff0wA5tzyT7NAdghxWo J22qGSec12j5XWLKQE2nJbEJ162vwdLNoV7/97saE8uSG9RV2XZGVhA477lzWfOLV3PpMRDvs of23GNLMJaf6BKtreTZ227WT3dspFCBHWf9wumQhoPztugHO6cScU39lZnyboZvuYUSq2eymp O04LpehnS87PJ6QrHesLoW+0su0pA1jH6nEnboigws4jkEL9OOwUF+3gqUXi5x2IQrVrUVB+8 qx+qxRyuyPhGo2V+arL9a1SFtB0DQPMYnWQZdDJdGhvarft3itFnC0suEYzm6cRvAm2wO0gj+ Vr8WicaivoJFZXjMFY6bsvvFsMzBo5x8egouhNx1ZSVPCtiYrID0Ca9DUVgYNheRe7meGCVYo nfaMwqVl2fTZ8f2Ix8LzYTez+2zAR0jlysRS3RS6lw9SdhuSlzOpIQZEfIXkNXhcL4Ubm51oQ G4B7BupOeVglu4hc65DP9POdwx3IUFQD84TvCQ4mS3t+LNoyL4UAacJJFUxukR/G9WmUYS3UM eYi1QMSqLBkYzt1LxN71ezVdq83qebASy2YfB2sCtvC+yjOKT2GPD0ockQu/zv6of+uqQkzvD RWT0TWpEMK0RFxOZrf/0PoKl/MIHKROGlRdRwnmdFi35ht4Rx9YzM6K3xo9K/Wd9H2CzEJm/K xVsmmRXdbSj8uuRt/klQtC2eXVkRlN6Ujk4USE4VwkQ3bSHkQAaFn7OTUAJ05iwAV4fAWFAbm Hhe+RosBFgNeRwLpATwBtj992zaPweY3UfZqyUaBcDT7c+4k37ZgCMMgrOtFdM2OdbsiJpzpM 2nCrMi1edyDKj+Hjrly5JXh635+eEnwToKbC//1tMX5idxBnCDRxArrakQbxjhP+1CKSXLQtk wXI3c6NjZ+jmfoLr1xYXlAHT6bzCmGa7IqogfZC9/kBceUInv/H/KPttiqkerTN9uKatYGgXE noiK1BrcKvHKNOYu6zdreNZIQzLL5DT/XhIS0W2KesFKEHvZOUT/T4AtAH0Vp0v4lTz23N42P lKPrKvfKgo1MeFr1jfR9gw7bXS35EH5r4yOV0Thhc4/SD7ZbyOsbp9IxgHITr71ebH6oZUpx0 SIor3Xglb+6M3ahtbol9lMU19OfBUGrJKTpRvPfH4S+UoyOfYikEagiY36Of/hko9eQAZL+Yt iDHNsuw5vy5H484crBlRMB8MItyDe+eI2Uz75SNquwW2T2peXfNWByCebPDVHbmHRZHH4f2w6 ICQn4q7ytfoicEtfzsA+TTYR5iAFJRAGmXP+zMs4fESk+nMmSe6IZ0cvABLibzEEWJ/fpl+rg KgPhEKLuGrVN5oT+xKZREXkvSXmlurlbyd7aObnvayl7WbBWJgWl8MMkXlm4/f+NP3oBSXUK1 berCng2T7SlN2LSdCEv/4xQrFGggurs1j8f2mo5xxLeMMjh1yOB5LGuXqsoUsxvcL2dYl4Ubt G6NYQY3ewPW6ENwP1xzN8UGX7qeZBlJ7m6fUB6ybdOLBdVvhyadhkSTs9Mqyj7OjqThnGN+In KAQxogDP7O8K0P6rFT4BomIklNpi7
Message-ID-Hash: MUJKYSDOHVHKP5MMECMKYXT6KSMVKCT6
X-Message-ID-Hash: MUJKYSDOHVHKP5MMECMKYXT6KSMVKCT6
X-MailFrom: hannes.tschofenig@gmx.net
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-teep.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-teep-protocol@ietf.org, kondtir@gmail.com, teep-chairs@ietf.org, teep@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Teep] Re: Gunter Van de Velde's No Objection on draft-ietf-teep-protocol-24: (with COMMENT)
List-Id: A Protocol for Dynamic Trusted Execution Environment Enablement <teep.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/teep/_nZNK7ckuoBYxmtb9vpfTbu9ugw>
List-Archive: <https://mailarchive.ietf.org/arch/browse/teep>
List-Help: <mailto:teep-request@ietf.org?subject=help>
List-Owner: <mailto:teep-owner@ietf.org>
List-Post: <mailto:teep@ietf.org>
List-Subscribe: <mailto:teep-join@ietf.org>
List-Unsubscribe: <mailto:teep-leave@ietf.org>
Thank you, Gunter, for your review. I agree that the term "interoperable" in the previous abstract was a bit too generic. We have updated the abstract to describe the protocol scope more explicitly: the TAM/TEEP Agent message exchanges, the supported lifecycle operations (install/update/delete), attestation-related exchanges, and the use of CBOR and COSE. I believe that the revised abstract now reads much better. Ciao Hannes Am 17.02.2026 um 14:48 schrieb Gunter Van de Velde via Datatracker: > Gunter Van de Velde has entered the following ballot position for > draft-ietf-teep-protocol-24: No Objection > > When responding, please keep the subject line intact and reply to all > email addresses included in the To and CC lines. (Feel free to cut this > introductory paragraph, however.) > > > Please refer to https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ > for more information about how to handle DISCUSS and COMMENT positions. > > > The document, along with other ballot positions, can be found here: > https://datatracker.ietf.org/doc/draft-ietf-teep-protocol/ > > > > ---------------------------------------------------------------------- > COMMENT: > ---------------------------------------------------------------------- > > # Gunter Van de Velde, RTG AD, comments for draft-ietf-teep-protocol-24 > > # The line numbers used are rendered from IETF idnits tool: > https://author-tools.ietf.org/api/idnits?url=https://www.ietf.org/archive/id/draft-ietf-teep-protocol-24.txt > > # idnits report displays few warnings > > # This document is not an easy read (i am not a security expert) and have only > performed a high level review. The sections i processed were well written. > > # i have only one observation: > > 19 This document specifies a protocol that installs, updates, and > 20 deletes Trusted Components in a device with a Trusted Execution > 21 Environment (TEE). This specification defines an interoperable > 22 protocol for managing the lifecycle of Trusted Components. > > GV> The abstract says that it defines an interoperable protocol. Is that not > implicit when a protocol is used by different devices? Maybe my question is > what does 'interoperable' describe in the context of the abstract? > > What about the following abstract (AI generated) > > " > This document specifies the Trusted Execution Environment Provisioning > (TEEP) Protocol, which enables secure lifecycle management of Trusted > Components in devices with a Trusted Execution Environment (TEE). > The protocol defines message exchanges between a Trusted Application > Manager (TAM) and a TEEP Agent to query device state, convey > attestation evidence, and install, update, or delete Trusted > Components. Messages are encoded in CBOR and secured using COSE. > " > > Many thanks for this document, > > Kind Regards, > Gunter Van de Velde > > > > _______________________________________________ > TEEP mailing list -- teep@ietf.org > To unsubscribe send an email to teep-leave@ietf.org
- [Teep] Gunter Van de Velde's No Objection on draf… Gunter Van de Velde via Datatracker
- [Teep] Re: Gunter Van de Velde's No Objection on … Hannes Tschofenig
- [Teep] Re: Gunter Van de Velde's No Objection on … Gunter van de Velde (Nokia)