ietf-tpm-remote-attestation

A YANG module to enable remote attestation procedures based on TPM 1.2 and TPM 2.0 using a challenge-response interaction model ...

Grouping Objects Abstract
bios-event-log bios-event-entry Measurement log created by the BIOS/UEFI.
boot-event-log event-number event-type pcr-index digest-list event-size event-data Defines a specific instance of an event log entry and corresponding to the information used to extend the PCR.
certificate-name-ref certificate-name Identifies a certificate in a keystore.
event-logs attested_event_log_type A selector for the log and its type.
ima-event event-number ima-template filename-hint filedata-hash filedata-hash-algorithm template-hash-algorithm template-hash pcr-index signature Defines a hash log extend event for IMA measurements.
ima-event-log ima-event-entry Measurement log created by IMA.
log-identifier log-type Identifier for type of log to be retrieved.
network-equipment-boot-event-log boot-event-entry Measurement log created by Network Equipment Boot. The Network Equipment Boot format is identical to the IMA format. In contrast to the IMA log, the Network Equipment Boot log includes every measurable event from an Attester, including the boot stages of BIOS, Bootloader, etc. In essence, the scope of events represented in this format combines the scope of BIOS events and IMA events.
node-uptime up-time Uptime in seconds of the node.
nonce nonce-value A random number intended to guarantee freshness and for use as part of a replay-detection mechanism.
tpm12-attestation up-timepcr-data version-info sig Contains an instance of cryptoprocessor measurements signed according to TPM 1.2. It is supplemented by unsigned Attester information.
tpm12-hash-algo tpm12-hash-algo The cryptographic algorithm used to hash the PCRs compliant with TPM 1.2.
tpm12-pcr-selection pcr-index A Verifier can request one or more PCR values using its individually created Attestation Key Certificate (AC). The corresponding selection filter is represented in this grouping.
tpm20-attestation quote-data quote-signature up-timeunsigned-pcr-values Contains an instance of cryptoprocessor measurements signed according to TPM 2.0. It is supplemented by unsigned Attester information.
tpm20-hash-algo tpm20-hash-algo The cryptographic algorithm used to hash the PCRs compliant with TPM 2.0. This must be from the list of platform- supported options.
tpm20-pcr-selection tpm20-pcr-selection A Verifier can acquire one or more PCR values, which are hashed together in a TPM2B_DIGEST coming from the TPM2. The selection list of desired PCRs and the hash algorithm is represented in this grouping.
tpm-name name A unique TPM on a device.

© 2024 YumaWorks, Inc. All rights reserved.