EntrustCorporation / draft-x509-evidence

IETF Internet-Draft specifying how to carry HSM-focused remote attestation evidence inside X.509 certificates.
Other
2 stars 1 forks source link

Clarifying the FIPS/CC Claims #7

Open hannestschofenig opened 1 year ago

hannestschofenig commented 1 year ago

We briefly talked about the relationship between the DLOA claim and the newly defined FIPS claim in the draft.

The difference is that DLOAs are essentially endorsements and the newly defined FIPS claim is evidence. The idea is that the device performs a self-test to compute the value.

[CW] In that case, perhaps self-test would be a better name.