Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Composite Attester/Device Description #22

Open
yogeshbdeshpande opened this issue Sep 27, 2023 · 4 comments
Open

Composite Attester/Device Description #22

yogeshbdeshpande opened this issue Sep 27, 2023 · 4 comments
Labels
[track] composite attesters [Track] Composite attesters

Comments

@yogeshbdeshpande
Copy link

As per RATS Architecture, Composite Device comprises of multiple sub-attester and a lead attester.

A more deeper discussion is required in CCC as to how different member organisation would want to see the Composite Attester Modelling and how the Format of the Attestation Token would span out meeting all the necessary security objectives

@muhammad-usama-sardar
Copy link
Contributor

how different member organisation would want to see the Composite Attester Modelling
how the Format of the Attestation Token would span out meeting all the necessary security objectives

This sounds very interesting. Can you elaborate a bit more, e.g.,

  • what kind of modeling are you thinking about?
  • how is the format of attestation token related to security objectives?

@thomas-fossati
Copy link
Contributor

how different member organisation would want to see the Composite Attester Modelling
how the Format of the Attestation Token would span out meeting all the necessary security objectives

This sounds very interesting. Can you elaborate a bit more, e.g.,

  • what kind of modeling are you thinking about?
  • how is the format of attestation token related to security objectives?

I think it'd be good to clearly state here what the expected outcome of the discussion would be. A position paper? Some form of input for the RATS / TCG / ${RELEVANT_SDO}? Other?

(CC: @TheBankster who put forward the need for a "composite attesters" track in the SIG.)

@thomas-fossati thomas-fossati added the [track] composite attesters [Track] Composite attesters label Oct 10, 2023
@yogeshbdeshpande
Copy link
Author

Agree that a whitepaper or a guidance document on the CCC's position on composite attester modelling (token format) and also how the Verification should happen for the overall composite device, would benefit the community.

@thomas-fossati
Copy link
Contributor

@deeglaze on 27th Feb 2024 call:

A few separate/separable dimensions to consider:

  • How to bind evidence's topology together
  • How to express topology from the lead attester
  • How to express the accepted topology in attestation results

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
[track] composite attesters [Track] Composite attesters
Projects
None yet
Development

No branches or pull requests

3 participants