Skip to content

Commit

Permalink
Script updating gh-pages from 3e6cea9. [ci skip]
Browse files Browse the repository at this point in the history
  • Loading branch information
ID Bot committed Jul 6, 2024
1 parent fe3705a commit 0506141
Show file tree
Hide file tree
Showing 3 changed files with 11 additions and 12 deletions.
10 changes: 5 additions & 5 deletions draft-ietf-rats-network-device-subscription.html
Original file line number Diff line number Diff line change
Expand Up @@ -1270,7 +1270,7 @@ <h2 id="name-introduction">
<h2 id="name-terminology">
<a href="#section-2" class="section-number selfRef">2. </a><a href="#name-terminology" class="section-name selfRef">Terminology</a>
</h2>
<p id="section-2-1">The following terms are imported from <span>[<a href="#I-D.ietf-rats-architecture" class="cite xref">I-D.ietf-rats-architecture</a>]</span>: Attester, Conceptual Message, Evidence, Relying Party, and Verifier. Also imported are the time definitions time(VG), time(NS), time(EG), time(RG), and time(RA) from that document's Appendix A. The following terms are imported from <span>[<a href="#RFC8639" class="cite xref">RFC8639</a>]</span>: Event Stream, Subscription, Event Stream Filter, Dynamic Subscription.<a href="#section-2-1" class="pilcrow"></a></p>
<p id="section-2-1">The following terms are imported from <span>[<a href="#I-D.ietf-rats-architecture" class="cite xref">I-D.ietf-rats-architecture</a>]</span>: Attester, Conceptual Message, Evidence, Relying Party, and Verifier. Also imported are the time definitions time(VG), time(NS), time(EG), time(RG), and time(RA) from that document's Appendix A. The following terms are imported from <span>[<a href="#RFC8639" class="cite xref">RFC8639</a>]</span>: Event Stream, Subscription, Publisher, Event Stream Filter, Dynamic Subscription.<a href="#section-2-1" class="pilcrow"></a></p>
<div id="requirements-notation">
<section id="section-2.1">
<h3 id="name-requirements-notation">
Expand Down Expand Up @@ -1452,7 +1452,7 @@ <h4 id="name-tpm-2-quote">
<h2 id="name-remote-attestation-event-st">
<a href="#section-4" class="section-number selfRef">4. </a><a href="#name-remote-attestation-event-st" class="section-name selfRef">Remote Attestation Event Stream</a>
</h2>
<p id="section-4-1">The &lt;attestation&gt; Event Stream is an <span>[<a href="#RFC8639" class="cite xref">RFC8639</a>]</span> compliant Event Stream which is defined within this section and within the YANG Module of <span>[<a href="#I-D.ietf-rats-yang-tpm-charra" class="cite xref">I-D.ietf-rats-yang-tpm-charra</a>]</span>. This Event Stream contains YANG notifications which carry Evidence to assists a Verifier in appraising the Trustworthiness Level of an Attester. Data Nodes within <a href="#configuring" class="auto internal xref">Section 4.6</a> allow the configuration of this Event Streams contents on an Attester.<a href="#section-4-1" class="pilcrow"></a></p>
<p id="section-4-1">The &lt;attestation&gt; Event Stream is an <span>[<a href="#RFC8639" class="cite xref">RFC8639</a>]</span> compliant Event Stream which is defined within this section and within the YANG Module of <span>[<a href="#I-D.ietf-rats-yang-tpm-charra" class="cite xref">I-D.ietf-rats-yang-tpm-charra</a>]</span>. This Event Stream contains YANG notifications which carry Evidence to assists a Verifier in appraising the Trustworthiness Level of an Attester. Data Nodes within <a href="#configuring" class="auto internal xref">Section 4.6</a> allow the configuration of this Event Stream's contents on an Attester.<a href="#section-4-1" class="pilcrow"></a></p>
<p id="section-4-2">This &lt;attestation&gt; Event Stream may only be exposed on Attesters supporting <span>[<a href="#I-D.ietf-rats-tpm-based-network-device-attest" class="cite xref">I-D.ietf-rats-tpm-based-network-device-attest</a>]</span>. As with <span>[<a href="#I-D.ietf-rats-tpm-based-network-device-attest" class="cite xref">I-D.ietf-rats-tpm-based-network-device-attest</a>]</span>, it is up to the Verifier to understand which types of cryptoprocessors and keys are acceptable.<a href="#section-4-2" class="pilcrow"></a></p>
<div id="subscription-to-the-attestation-event-stream">
<section id="section-4.1">
Expand Down Expand Up @@ -1628,7 +1628,7 @@ <h3 id="name-filtering-evidence-at-the-a">
<h3 id="name-replaying-previous-pcr-exte">
<a href="#section-4.5" class="section-number selfRef">4.5. </a><a href="#name-replaying-previous-pcr-exte" class="section-name selfRef">Replaying previous PCR Extend events</a>
</h3>
<p id="section-4.5-1">To verify the value of a PCR, a Verifier must either know that the value is a known good value <span>[<a href="#KGV" class="cite xref">KGV</a>]</span> or be able to reconstruct the hash value by viewing all the PCR-Extends since the Attester rebooted. Wherever a hash reconstruction might be needed, the &lt;attestation&gt; Event Stream <span class="bcp14">MUST</span> support the RFC8639 &lt;replay&gt; feature. Through the &lt;replay&gt; feature, it is possible for a Verifier to retrieve and sequentially hash all of the PCR extending events since an Attester booted. And thus, the Verifier has access to all the evidence needed to verify a PCRs current value.<a href="#section-4.5-1" class="pilcrow"></a></p>
<p id="section-4.5-1">To verify the value of a PCR, a Verifier must either know that the value is a known good value <span>[<a href="#KGV" class="cite xref">KGV</a>]</span> or be able to reconstruct the hash value by viewing all the PCR-Extends since the Attester rebooted. Wherever a hash reconstruction might be needed, the &lt;attestation&gt; Event Stream <span class="bcp14">MUST</span> support the RFC8639 &lt;replay&gt; feature. Through the &lt;replay&gt; feature, it is possible for a Verifier to retrieve and sequentially hash all of the PCR extending events since an Attester booted. And thus, the Verifier has access to all the evidence needed to verify a PCR's current value.<a href="#section-4.5-1" class="pilcrow"></a></p>
</section>
</div>
<div id="configuring">
Expand Down Expand Up @@ -2094,10 +2094,10 @@ <h3 id="name-informative-references">
<h2 id="name-change-log">
<a href="#appendix-A" class="section-number selfRef">Appendix A. </a><a href="#name-change-log" class="section-name selfRef">Change Log</a>
</h2>
<p id="appendix-A-1">v00-v01<a href="#appendix-A-1" class="pilcrow"></a></p>
<p id="appendix-A-1">v00-v05<a href="#appendix-A-1" class="pilcrow"></a></p>
<ul class="normal">
<li class="normal" id="appendix-A-2.1">
<p id="appendix-A-2.1.1">minor updates, party based on the dependent Charra going through IESG.<a href="#appendix-A-2.1.1" class="pilcrow"></a></p>
<p id="appendix-A-2.1.1">minor updates as Charra goes through IESG.<a href="#appendix-A-2.1.1" class="pilcrow"></a></p>
</li>
</ul>
</section>
Expand Down
11 changes: 5 additions & 6 deletions draft-ietf-rats-network-device-subscription.txt
Original file line number Diff line number Diff line change
Expand Up @@ -201,7 +201,7 @@ Table of Contents
Also imported are the time definitions time(VG), time(NS), time(EG),
time(RG), and time(RA) from that document's Appendix A. The
following terms are imported from [RFC8639]: Event Stream,
Subscription, Event Stream Filter, Dynamic Subscription.
Subscription, Publisher, Event Stream Filter, Dynamic Subscription.

2.1. Requirements Notation

Expand Down Expand Up @@ -396,7 +396,7 @@ Table of Contents
[I-D.ietf-rats-yang-tpm-charra]. This Event Stream contains YANG
notifications which carry Evidence to assists a Verifier in
appraising the Trustworthiness Level of an Attester. Data Nodes
within Section 4.6 allow the configuration of this Event Streams
within Section 4.6 allow the configuration of this Event Stream's
contents on an Attester.

This <attestation> Event Stream may only be exposed on Attesters
Expand Down Expand Up @@ -631,7 +631,7 @@ Table of Contents
<replay> feature, it is possible for a Verifier to retrieve and
sequentially hash all of the PCR extending events since an Attester
booted. And thus, the Verifier has access to all the evidence needed
to verify a PCRs current value.
to verify a PCR's current value.

4.6. Configuring the <attestation> Event Stream

Expand Down Expand Up @@ -1087,10 +1087,9 @@ Table of Contents

Appendix A. Change Log

v00-v01
v00-v05

* minor updates, party based on the dependent Charra going through
IESG.
* minor updates as Charra goes through IESG.

Acknowledgements

Expand Down
2 changes: 1 addition & 1 deletion index.html
Original file line number Diff line number Diff line change
Expand Up @@ -61,7 +61,7 @@ <h2>Preview for branch <a href="event-logs">event-logs</a></h2>
<tr>
<td><a href="event-logs/draft-ietf-rats-network-device-subscription.html" class="html draft-ietf-rats-network-device-subscription" title="Attestation Event Stream Subscription (HTML)">RATS Subscription</a></td>
<td><a href="event-logs/draft-ietf-rats-network-device-subscription.txt" class="txt draft-ietf-rats-network-device-subscription" title="Attestation Event Stream Subscription (Text)">plain text</a></td>
<td>same as main</td>
<td><a href="https://author-tools.ietf.org/api/iddiff?url_1=https://ietf-rats-wg.github.io/draft-ietf-rats-network-device-subscription/draft-ietf-rats-network-device-subscription.txt&amp;url_2=https://ietf-rats-wg.github.io/draft-ietf-rats-network-device-subscription/event-logs/draft-ietf-rats-network-device-subscription.txt" class="diff draft-ietf-rats-network-device-subscription">diff with main</a></td>
</tr>
</table>
<script>
Expand Down

0 comments on commit 0506141

Please sign in to comment.