Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Cross-check security requirements with other industry initiatives (Arm BBRS) #21

Open
andreiw opened this issue Mar 30, 2023 · 3 comments
Assignees

Comments

@andreiw
Copy link
Collaborator

andreiw commented Mar 30, 2023

Do we consider these part of the BRS-I or should this be a separate document like BBRS?

@adurbin-rivos
Copy link
Collaborator

What security aspects are you thinking should be covered?

@andreiw
Copy link
Collaborator Author

andreiw commented Apr 12, 2023

To paraphrase the Arm BBRS (https://developer.arm.com/documentation/den0107/latest/)

Platform requirements for BRS-based systems that enable standard, suitably built
operating systems to seamlessly use standard security interfaces. These interfaces include the following security
related functionality:
• UEFI authenticated variables
• UEFI secure boot
• UEFI secure firmware update using Update Capsules
• TPMs and measured boot

The Arm BBRS also covers platform reset attacks, and implementation guidelines (which they refer to as a checklist)

Maybe don't have to overthink this and it can be first defined under a server platform spec and then factored out. Or it could be an optional addendum to BRS.

Thoughts?

@andreiw andreiw self-assigned this Apr 11, 2024
@andreiw andreiw changed the title Security requirements? Cross-check security requirements with other industry initiatives (Arm BBRS) Apr 11, 2024
@andreiw
Copy link
Collaborator Author

andreiw commented Apr 11, 2024

Need to revisit this, esp wrt #136 and #135

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants