[{"author": "Oliver Terbu", "text": "<p>Tobias sends his regrets; he won't be able to join. It is 4am in NZ.</p>", "time": "2024-05-21T16:05:47Z"}, {"author": "Pieter Kasselman", "text": "<p>The client backend and the client instance bot run on for example, a mobile phone (no network connection)?</p>", "time": "2024-05-21T16:16:14Z"}, {"author": "Hannes Tschofenig", "text": "<p>FWIW TPMs are not used on mobile devices</p>", "time": "2024-05-21T16:17:16Z"}, {"author": "Oliver Terbu", "text": "<p>I believe a network connectivity is needed, and the client backend typically runs in the cloud.</p>", "time": "2024-05-21T16:17:33Z"}, {"author": "Pieter Kasselman", "text": "<p>Interesting, so how can the client back-end attest to the key?</p>", "time": "2024-05-21T16:18:14Z"}, {"author": "Yaron Sheffer", "text": "<p>Pieter preempted my q</p>", "time": "2024-05-21T16:22:45Z"}, {"author": "Rifaat Shekh-Yusef", "text": "<p>No worries :)</p>", "time": "2024-05-21T16:22:56Z"}, {"author": "Steve Venema", "text": "<p>@Tobias &amp; @Paul: in case you aren't aware of it, there is some seemingly-related work out of TCG's Trusted Network Communications WG .  I wonder if  any of their work might inform this development effort? (things to avoid, things you haven't yet thought of, etc...)</p>\n<p>Granted, they are mostly focused is on TPMs, but still...</p>\n<p><a href=\"https://trustedcomputinggroup.org/work-groups/trusted-network-communications/\">https://trustedcomputinggroup.org/work-groups/trusted-network-communications/</a></p>", "time": "2024-05-21T16:31:01Z"}, {"author": "Hannes Tschofenig", "text": "<p>There is great work in the IETF RATS group on this topic</p>", "time": "2024-05-21T16:31:28Z"}, {"author": "Steve Venema", "text": "<p><span aria-label=\"+1\" class=\"emoji emoji-1f44d\" role=\"img\" title=\"+1\">:+1:</span></p>", "time": "2024-05-21T16:32:25Z"}, {"author": "Pieter Kasselman", "text": "<p>+1 on both</p>", "time": "2024-05-21T16:37:01Z"}, {"author": "Hannes Tschofenig", "text": "<p>We are running out of good terms ;-)</p>", "time": "2024-05-21T16:38:49Z"}, {"author": "Pieter Kasselman", "text": "<p>Using the same key for different purposes is a great way to break into jail</p>", "time": "2024-05-21T16:50:48Z"}, {"author": "Justin Richer", "text": "<p>Could we please not optimize for worse security practices?</p>", "time": "2024-05-21T16:51:15Z"}, {"author": "Pieter Kasselman", "text": "<p>If we have the abilitty to generate and get attested keys, why not just get two keys</p>", "time": "2024-05-21T16:51:18Z"}, {"author": "Justin Richer", "text": "<p>+1 to pieter</p>", "time": "2024-05-21T16:53:52Z"}, {"author": "Justin Richer", "text": "<p>plus there are other presentation mechanisms out there</p>", "time": "2024-05-21T16:54:06Z"}, {"author": "Justin Richer", "text": "<p>(though dpop is the most popular for sure)</p>", "time": "2024-05-21T16:54:15Z"}, {"author": "Pieter Kasselman", "text": "<p>The DPoP key is also used to create proofs that go to the RS</p>", "time": "2024-05-21T16:54:59Z"}, {"author": "Pieter Kasselman", "text": "<p>RS = resource serve</p>", "time": "2024-05-21T16:55:10Z"}, {"author": "Hannes Tschofenig", "text": "<p>Thank you all</p>", "time": "2024-05-21T16:59:51Z"}, {"author": "Pieter Kasselman", "text": "<p>Thanks for the work Paul and Tobias</p>", "time": "2024-05-21T17:00:01Z"}]