ietf-rats-wg / architecture

RATS Architecture
Other
15 stars 10 forks source link

Trust anchor definition too narrow #392

Closed thomas-fossati closed 2 years ago

thomas-fossati commented 2 years ago

Throughout the document the term "trust anchor" is meant in the RFC6024 sense to be a public key and associated (meta)data.

This definition does not cover attestation schemes based on symmetric crypto, e.g., TCG MARS, Symmetric Identity Based Device Attestation for DICE and Arm PSA, and should be extended to also cover such cases.

nedmsmith commented 2 years ago

Was there specific text that you believe needs to be changed?

thomas-fossati commented 2 years ago

Was there specific text that you believe needs to be changed?

yes, we identified at least two places: §7.1 and §12.4.