[TLS] Re: A different approach to Attestation

2025-03-17 Thread Phillip Hallam-Baker
With due respect, no this is not the same at all. They may provide the same functionality but the technical implementation is entirely different as are the security guarantees and the complexity of the TPM module operations. It appears that we have very different use cases. The notion of allowing

[TLS] Re: A different approach to Attestation

2025-03-16 Thread Russ Housley
Phill: This is really a description of IDevID certificates that are installed by a factory, and then replaced by LDevID certificates that are issed by the device owner at the time of installation. NETCONF already supports that model.What am I missing? Russ > On Mar 16, 2025, at 11:31 PM, Phi