@techreport{kykdxy-rats-tdx-cgpu-ear-profile-01, number = {draft-kykdxy-rats-tdx-cgpu-ear-profile-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-kykdxy-rats-tdx-cgpu-ear-profile/01/}, author = {Greg Kostal and Raghuram Yeluri and Dhawal Kumar and Sindhuri Dittakavi and Haidong Xia and Jerry Yu}, title = {{EAT Attestation Result (EAR) profile for Intel(r) Trust Domain Extensions (TDX) + Confidential GPU (C-GPU) composite attestation}}, pagetotal = 23, year = 2026, month = may, day = 21, abstract = {This document defines an Entity Attestation Token (EAT) Attestation Result (EAR) profile for the composite attestation of IntelĀ® Trust Domain Extensions (TDX)\textendash{}based Confidential Virtual Machines (CVMs) together with confidential NVIDIA GPUs (C-GPUs) deployed in Microsoft Azure. The profile outlines claims that enable relying parties to establish trust in the integrity and confidentiality of the combined confidential computing environment. Developed collaboratively by Microsoft, Intel, and NVIDIA, this work is intended to foster interoperable composite attestation across heterogeneous Trusted Execution Environments (TEEs) and confidential accelerators, while encouraging adoption and extension by verifier providers across the confidential computing ecosystem.}, }