ietf-rats-wg / draft-ietf-rats-msg-wrap

RATS conceptual messages wrapper
Other
0 stars 1 forks source link

request an OID for embedding CMWs in certs #44

Closed thomas-fossati closed 6 months ago

thomas-fossati commented 6 months ago

Current work in TCG DICE and IETF "attested CSR" requires embedding CMWs in X.509 artefacts (certs and CSRs).

We should register the relevant OIDs with IANA.

nedmsmith commented 6 months ago

The TCG specification is publicly available here: https://trustedcomputinggroup.org/wp-content/uploads/DICE-Attestation-Architecture-Version-1.1-Revision-18_pub.pdf

nedmsmith commented 6 months ago

Given cmw I-D more recently included cmw-collection, would it make sense for it to also define an ASN.1 form and register an OID?

thomas-fossati commented 6 months ago

The TCG specification is publicly available here: https://trustedcomputinggroup.org/wp-content/uploads/DICE-Attestation-Architecture-Version-1.1-Revision-18_pub.pdf

My bad! I missed this definition from DICE-AA:

tcg-dice-conceptual-message-wrapper OBJECT IDENTIFIER ::= {tcg-dice 9}

I guess it can be used as-is?

Given cmw I-D more recently included cmw-collection, would it make sense for it to also define an ASN.1 form and register an OID?

OK, what's left is registering one OID for the collection, i.e.:

cmw-collection OBJECT IDENTIFIER ::= { TBD }

CMWCollection ::= OCTET STRING

@hannestschofenig @nedmsmith?

nedmsmith commented 6 months ago

LGTM