https://www.opencompute.org/w/api.php?action=feedcontributions&user=Nate.klein&feedformat=atom
OpenCompute - User contributions [en]
2024-03-19T10:54:58Z
User contributions
MediaWiki 1.39.2
https://www.opencompute.org/w/index.php?title=Security&diff=12435
Security
2022-08-24T20:41:56Z
<p>Nate.klein: Added ocp recovery overview link</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
::- [https://docs.google.com/document/d/1-bfAF86cEKcn1guF-Qj2C2HhMM2oJ2njNGdHxZeetR0/edit# Secure Platform Overview]<br />
<br />
::- [https://docs.google.com/document/d/1oANhjvv_R7E5n8w1RroN8l8-0jdYlfdQDp_3RqGV66k/edit# Ownership Transfer]<br />
<br />
::- [https://docs.google.com/document/d/17QAXfpEDlIvSbw0pFJ9wKeIBeBwIFkP4Z8SjhxyECAw/edit# Work Backlog & Prioritization]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
:- [https://drive.google.com/file/d/1FIIGfvdCC3uIrn_2FsWQu4EHdxzL9K-Q/view?usp=sharing Ownership Transfer and State Management] Presented 2022-03-08 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1UETpYWAtUORr-IT-qblvCWfjWDeuaaoJ/view?usp=sharing OCP Crypto Discussion] Presented 2022-09-08 by Huijun Xie<br />
<br />
:- [https://drive.google.com/file/d/1hVj0qxCsZGg3ZXR70asCPRKz8eBRDC13/view?usp=sharing System Ownership and Firmware with Multiple Signing Domains] Presented 2022-09-23 by Daniil Egranov<br />
<br />
:- [https://drive.google.com/file/d/1iPwIzVb1lqpebZokxwSEI6YfXAg9hdFL/view?usp=sharing OCP Recovery Overview] Presented by Eric Spada<br />
<br />
==Approved Publications==<br />
<br />
::- [https://www.opencompute.org/documents/common-security-threats-notes-1-pdf Common Security Threats v1.0 White Paper]<br />
::- [https://www.opencompute.org/documents/secure-boot-2-pdf Secure Boot v1.0 White Paper]<br />
::- [https://www.opencompute.org/documents/attestation-v1-0-20201104-pdf Attestation v1.0 White Paper]<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
::- [https://www.opencompute.org/documents/ibm-white-paper-best-practices-for-firmware-code-signing INFO, White Paper, Best Practices for Firmware Code Signing, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:andres.lagar-cavilla@ocproject.net Andres Lagar-Cavilla] (Google)<br />
<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
:- [https://docs.google.com/document/d/1VVMUzYESZNuyT1_YJlQSdSKBy-5t1otJIyXTbXuOoX4/edit Meeting Notes]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
OCP Security Project Call <br />
:- [https://www.youtube.com/watch?v=5SejykeQauU July 12th, 2022]<br />
:- [https://www.youtube.com/watch?v=S3YjOWY_Ljc June 28th, 2022]<br />
:- [https://www.youtube.com/watch?v=peyF1slSreQ June 21st, 2022]<br />
:- [https://www.youtube.com/watch?v=G_bChr7cj1o June 14th, 2022]<br />
:- [https://www.youtube.com/watch?v=jlPlElUcx9g June 7th, 2022]<br />
:- Call Cancelled<br />
:- [https://www.youtube.com/watch?v=MR4r5Td7E54 May 17th, 2022]<br />
:- [https://www.youtube.com/watch?v=ygmaTc6n078 May 10th, 2022]<br />
:- [https://www.opencompute.org/events/past-events/ocp-tech-talk-series-security May 3rd, 2022 Security Project Tech Talk]<br />
:- April 26th, 2022 Call Not Recorded<br />
:- [https://www.youtube.com/watch?v=5sgW6qIw4xg April 19th, 2022]<br />
:- [https://www.youtube.com/watch?v=XHvx_ksWNVQ April 12th, 2022]<br />
:- [https://www.youtube.com/watch?v=vdMk1UvyA1g April 5th, 2022]<br />
:- [https://www.youtube.com/watch?v=gKFWcX8jVf8 March 29th, 2022]<br />
:- March 22nd, 2022 Call Not Recorded<br />
:- [https://www.youtube.com/watch?v=s9uei_7gLOM March 15th, 2022]<br />
:- [https://www.youtube.com/watch?v=nq5ZJTE_QPk March 8th, 2022]<br />
:- [https://www.youtube.com/watch?v=D6PLcvsmvOA February 22nd, 2022]<br />
:- [https://www.youtube.com/watch?v=JHGHDR1iS0E February 15th, 2022]<br />
:- [https://www.youtube.com/watch?v=Tlf4lEU36LU February 8th, 2022]<br />
:- [https://www.youtube.com/watch?v=E1Mzy8lSxa8 February 1st, 2022]<br />
:- [https://www.youtube.com/watch?v=675cQUF1trI January 25th, 2022]<br />
:- [https://www.youtube.com/watch?v=v3Ih8EOyxeU January 11th, 2022]<br />
:- [https://www.youtube.com/watch?v=P_dQwTZC0Mo December 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=1HpZ5r9KJmE December 7th, 2021]<br />
:- [https://www.youtube.com/watch?v=ha7I1Ch51qo November 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=gih6sfX-PWE September 28th, 2021]<br />
:- [https://www.youtube.com/watch?v=GTVmvLGoJXI September 21st, 2021]<br />
:- [https://www.youtube.com/watch?v=G8Y5lO-BKwA September 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=effKwMAh_r4 August 10th, 2021]<br />
:- [https://www.youtube.com/watch?v=X1qfSoKnTWs August 3rd, 2021]<br />
:- [https://www.youtube.com/watch?v=xwBoXJWa1i8 July 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=JW2k43i0eWc July 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=Zg0EcFmphrE July 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=WGNjMawjr8M June 29th, 2021]<br />
:- [https://www.youtube.com/watch?v=4H-y4CAXPdU June 22nd, 2021]<br />
:- [https://www.youtube.com/watch?v=4OOVMbm6uAI June 15th, 2021]<br />
:- [https://www.youtube.com/watch?v=8MAhAykZ5cs June 8th, 2021]<br />
:- [https://www.youtube.com/watch?v=Z_QX9Y2s9P4 June 1st, 2021]<br />
:- [https://www.youtube.com/watch?v=LWg4NIOkqOI May 25th, 2021]<br />
:- [https://www.youtube.com/watch?v=wQo6IiK1M1I May 18th, 2021]<br />
:- [https://www.youtube.com/watch?v=Q77IvLzDj2E May 11th, 2021]<br />
:- [https://www.youtube.com/watch?v=M6cid7COeeg April 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=f2uBU4Dj2Mw April 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=yjwsy6OjKT0 April 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=11814
Security
2022-03-08T22:25:02Z
<p>Nate.klein: Added link to Ownership Transfer and State Management preso</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
::- [https://docs.google.com/document/d/1-bfAF86cEKcn1guF-Qj2C2HhMM2oJ2njNGdHxZeetR0/edit# Secure Platform Overview]<br />
<br />
::- [https://docs.google.com/document/d/1oANhjvv_R7E5n8w1RroN8l8-0jdYlfdQDp_3RqGV66k/edit# Ownership Transfer]<br />
<br />
::- [https://docs.google.com/document/d/17QAXfpEDlIvSbw0pFJ9wKeIBeBwIFkP4Z8SjhxyECAw/edit# Work Backlog & Prioritization]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
:- [https://drive.google.com/file/d/1FIIGfvdCC3uIrn_2FsWQu4EHdxzL9K-Q/view?usp=sharing Ownership Transfer and State Management] Presented 2022-03-08 by Jeff Andersen<br />
<br />
==Approved Publications==<br />
<br />
::- [https://www.opencompute.org/documents/common-security-threats-notes-1-pdf Common Security Threats v1.0 White Paper]<br />
::- [https://www.opencompute.org/documents/secure-boot-2-pdf Secure Boot v1.0 White Paper]<br />
::- [https://www.opencompute.org/documents/attestation-v1-0-20201104-pdf Attestation v1.0 White Paper]<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
::- [https://www.opencompute.org/documents/ibm-white-paper-best-practices-for-firmware-code-signing INFO, White Paper, Best Practices for Firmware Code Signing, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:andres.lagar-cavilla@ocproject.net Andres Lagar-Cavilla] (Google)<br />
<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
:- [https://docs.google.com/document/d/1VVMUzYESZNuyT1_YJlQSdSKBy-5t1otJIyXTbXuOoX4/edit Meeting Notes]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=JHGHDR1iS0E February 15th, 2022]<br />
:- [https://www.youtube.com/watch?v=Tlf4lEU36LU February 8th, 2022]<br />
:- [https://www.youtube.com/watch?v=E1Mzy8lSxa8 February 1st, 2022]<br />
:- [https://www.youtube.com/watch?v=675cQUF1trI January 25th, 2022]<br />
:- [https://www.youtube.com/watch?v=v3Ih8EOyxeU January 11th, 2022]<br />
:- [https://www.youtube.com/watch?v=P_dQwTZC0Mo December 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=1HpZ5r9KJmE December 7th, 2021]<br />
:- [https://www.youtube.com/watch?v=ha7I1Ch51qo November 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=gih6sfX-PWE September 28th, 2021]<br />
:- [https://www.youtube.com/watch?v=GTVmvLGoJXI September 21st, 2021]<br />
:- [https://www.youtube.com/watch?v=G8Y5lO-BKwA September 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=effKwMAh_r4 August 10th, 2021]<br />
:- [https://www.youtube.com/watch?v=X1qfSoKnTWs August 3rd, 2021]<br />
:- [https://www.youtube.com/watch?v=xwBoXJWa1i8 July 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=JW2k43i0eWc July 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=Zg0EcFmphrE July 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=WGNjMawjr8M June 29th, 2021]<br />
:- [https://www.youtube.com/watch?v=4H-y4CAXPdU June 22nd, 2021]<br />
:- [https://www.youtube.com/watch?v=4OOVMbm6uAI June 15th, 2021]<br />
:- [https://www.youtube.com/watch?v=8MAhAykZ5cs June 8th, 2021]<br />
:- [https://www.youtube.com/watch?v=Z_QX9Y2s9P4 June 1st, 2021]<br />
:- [https://www.youtube.com/watch?v=LWg4NIOkqOI May 25th, 2021]<br />
:- [https://www.youtube.com/watch?v=wQo6IiK1M1I May 18th, 2021]<br />
:- [https://www.youtube.com/watch?v=Q77IvLzDj2E May 11th, 2021]<br />
:- [https://www.youtube.com/watch?v=M6cid7COeeg April 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=f2uBU4Dj2Mw April 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=yjwsy6OjKT0 April 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=11754
Security
2022-02-22T21:51:04Z
<p>Nate.klein: /* Approved Publications */ Added links to attestation, secure boot, and common threats docs</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
::- [https://docs.google.com/document/d/1-bfAF86cEKcn1guF-Qj2C2HhMM2oJ2njNGdHxZeetR0/edit# Secure Platform Overview]<br />
<br />
::- [https://docs.google.com/document/d/1oANhjvv_R7E5n8w1RroN8l8-0jdYlfdQDp_3RqGV66k/edit# Ownership Transfer]<br />
<br />
::- [https://docs.google.com/document/d/17QAXfpEDlIvSbw0pFJ9wKeIBeBwIFkP4Z8SjhxyECAw/edit# Work Backlog & Prioritization]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
==Approved Publications==<br />
<br />
::- [https://www.opencompute.org/documents/common-security-threats-notes-1-pdf Common Security Threats v1.0 White Paper]<br />
::- [https://www.opencompute.org/documents/secure-boot-2-pdf Secure Boot v1.0 White Paper]<br />
::- [https://www.opencompute.org/documents/attestation-v1-0-20201104-pdf Attestation v1.0 White Paper]<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
::- [https://www.opencompute.org/documents/ibm-white-paper-best-practices-for-firmware-code-signing INFO, White Paper, Best Practices for Firmware Code Signing, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:andres.lagar-cavilla@ocproject.net Andres Lagar-Cavilla] (Google)<br />
<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
:- [https://docs.google.com/document/d/1VVMUzYESZNuyT1_YJlQSdSKBy-5t1otJIyXTbXuOoX4/edit Meeting Notes]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=JHGHDR1iS0E February 15th, 2022]<br />
:- [https://www.youtube.com/watch?v=Tlf4lEU36LU February 8th, 2022]<br />
:- [https://www.youtube.com/watch?v=E1Mzy8lSxa8 February 1st, 2022]<br />
:- [https://www.youtube.com/watch?v=675cQUF1trI January 25th, 2022]<br />
:- [https://www.youtube.com/watch?v=v3Ih8EOyxeU January 11th, 2022]<br />
:- [https://www.youtube.com/watch?v=P_dQwTZC0Mo December 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=1HpZ5r9KJmE December 7th, 2021]<br />
:- [https://www.youtube.com/watch?v=ha7I1Ch51qo November 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=gih6sfX-PWE September 28th, 2021]<br />
:- [https://www.youtube.com/watch?v=GTVmvLGoJXI September 21st, 2021]<br />
:- [https://www.youtube.com/watch?v=G8Y5lO-BKwA September 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=effKwMAh_r4 August 10th, 2021]<br />
:- [https://www.youtube.com/watch?v=X1qfSoKnTWs August 3rd, 2021]<br />
:- [https://www.youtube.com/watch?v=xwBoXJWa1i8 July 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=JW2k43i0eWc July 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=Zg0EcFmphrE July 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=WGNjMawjr8M June 29th, 2021]<br />
:- [https://www.youtube.com/watch?v=4H-y4CAXPdU June 22nd, 2021]<br />
:- [https://www.youtube.com/watch?v=4OOVMbm6uAI June 15th, 2021]<br />
:- [https://www.youtube.com/watch?v=8MAhAykZ5cs June 8th, 2021]<br />
:- [https://www.youtube.com/watch?v=Z_QX9Y2s9P4 June 1st, 2021]<br />
:- [https://www.youtube.com/watch?v=LWg4NIOkqOI May 25th, 2021]<br />
:- [https://www.youtube.com/watch?v=wQo6IiK1M1I May 18th, 2021]<br />
:- [https://www.youtube.com/watch?v=Q77IvLzDj2E May 11th, 2021]<br />
:- [https://www.youtube.com/watch?v=M6cid7COeeg April 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=f2uBU4Dj2Mw April 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=yjwsy6OjKT0 April 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=11661
Security
2022-01-28T17:51:59Z
<p>Nate.klein: Added link to meeting notes</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
::- [https://docs.google.com/document/d/1-bfAF86cEKcn1guF-Qj2C2HhMM2oJ2njNGdHxZeetR0/edit# Secure Platform Overview]<br />
<br />
::- [https://docs.google.com/document/d/1oANhjvv_R7E5n8w1RroN8l8-0jdYlfdQDp_3RqGV66k/edit# Ownership Transfer]<br />
<br />
::- [https://docs.google.com/document/d/17QAXfpEDlIvSbw0pFJ9wKeIBeBwIFkP4Z8SjhxyECAw/edit# Work Backlog & Prioritization]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:andres.lagar-cavilla@ocproject.net Andres Lagar-Cavilla] (Google)<br />
<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
:- [https://docs.google.com/document/d/1VVMUzYESZNuyT1_YJlQSdSKBy-5t1otJIyXTbXuOoX4/edit Meeting Notes]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=675cQUF1trI January 25th, 2022]<br />
:- [https://www.youtube.com/watch?v=v3Ih8EOyxeU January 11th, 2022]<br />
:- [https://www.youtube.com/watch?v=P_dQwTZC0Mo December 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=1HpZ5r9KJmE December 7th, 2021]<br />
:- [https://www.youtube.com/watch?v=ha7I1Ch51qo November 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=gih6sfX-PWE September 28th, 2021]<br />
:- [https://www.youtube.com/watch?v=GTVmvLGoJXI September 21st, 2021]<br />
:- [https://www.youtube.com/watch?v=G8Y5lO-BKwA September 14th, 2021]<br />
:- [https://www.youtube.com/watch?v=effKwMAh_r4 August 10th, 2021]<br />
:- [https://www.youtube.com/watch?v=X1qfSoKnTWs August 3rd, 2021]<br />
:- [https://www.youtube.com/watch?v=xwBoXJWa1i8 July 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=JW2k43i0eWc July 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=Zg0EcFmphrE July 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=WGNjMawjr8M June 29th, 2021]<br />
:- [https://www.youtube.com/watch?v=4H-y4CAXPdU June 22nd, 2021]<br />
:- [https://www.youtube.com/watch?v=4OOVMbm6uAI June 15th, 2021]<br />
:- [https://www.youtube.com/watch?v=8MAhAykZ5cs June 8th, 2021]<br />
:- [https://www.youtube.com/watch?v=Z_QX9Y2s9P4 June 1st, 2021]<br />
:- [https://www.youtube.com/watch?v=LWg4NIOkqOI May 25th, 2021]<br />
:- [https://www.youtube.com/watch?v=wQo6IiK1M1I May 18th, 2021]<br />
:- [https://www.youtube.com/watch?v=Q77IvLzDj2E May 11th, 2021]<br />
:- [https://www.youtube.com/watch?v=M6cid7COeeg April 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=f2uBU4Dj2Mw April 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=yjwsy6OjKT0 April 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=11099
Security
2021-08-24T16:33:54Z
<p>Nate.klein: Added work backlog doc link</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
::- [https://docs.google.com/document/d/1-bfAF86cEKcn1guF-Qj2C2HhMM2oJ2njNGdHxZeetR0/edit# Secure Platform Overview]<br />
<br />
::- [https://docs.google.com/document/d/1oANhjvv_R7E5n8w1RroN8l8-0jdYlfdQDp_3RqGV66k/edit# Ownership Transfer]<br />
<br />
::- [https://docs.google.com/document/d/17QAXfpEDlIvSbw0pFJ9wKeIBeBwIFkP4Z8SjhxyECAw/edit# Work Backlog & Prioritization]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=effKwMAh_r4 August 10th, 2021]<br />
:- [https://www.youtube.com/watch?v=X1qfSoKnTWs August 3rd, 2021]<br />
:- [https://www.youtube.com/watch?v=xwBoXJWa1i8 July 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=JW2k43i0eWc July 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=Zg0EcFmphrE July 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=WGNjMawjr8M June 29th, 2021]<br />
:- [https://www.youtube.com/watch?v=4H-y4CAXPdU June 22nd, 2021]<br />
:- [https://www.youtube.com/watch?v=4OOVMbm6uAI June 15th, 2021]<br />
:- [https://www.youtube.com/watch?v=8MAhAykZ5cs June 8th, 2021]<br />
:- [https://www.youtube.com/watch?v=Z_QX9Y2s9P4 June 1st, 2021]<br />
:- [https://www.youtube.com/watch?v=LWg4NIOkqOI May 25th, 2021]<br />
:- [https://www.youtube.com/watch?v=wQo6IiK1M1I May 18th, 2021]<br />
:- [https://www.youtube.com/watch?v=Q77IvLzDj2E May 11th, 2021]<br />
:- [https://www.youtube.com/watch?v=M6cid7COeeg April 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=f2uBU4Dj2Mw April 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=yjwsy6OjKT0 April 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=10710
Security
2021-05-18T15:45:12Z
<p>Nate.klein: Added Secure Platform Overview and Ownership Transfer doc links</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
::- [https://docs.google.com/document/d/1-bfAF86cEKcn1guF-Qj2C2HhMM2oJ2njNGdHxZeetR0/edit# Secure Platform Overview]<br />
<br />
::- [https://docs.google.com/document/d/1oANhjvv_R7E5n8w1RroN8l8-0jdYlfdQDp_3RqGV66k/edit# Ownership Transfer]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=Q77IvLzDj2E May 11th, 2021]<br />
:- [https://www.youtube.com/watch?v=M6cid7COeeg April 27th, 2021]<br />
:- [https://www.youtube.com/watch?v=f2uBU4Dj2Mw April 20th, 2021]<br />
:- [https://www.youtube.com/watch?v=yjwsy6OjKT0 April 13th, 2021]<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=10496
Security
2021-04-13T16:29:08Z
<p>Nate.klein: Added recovery doc link</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery DEPRECATED]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1Ge_w9i5A6YKG-7nlTp--JhZf6By7I9oB3oW_2_i7JbE/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=6zu0_ioDMyE April 6th, 2021]<br />
:- [https://www.youtube.com/watch?v=vF0c0j-PT0k March 30th, 2021]<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=10440
Security
2021-03-30T16:48:23Z
<p>Nate.klein: Added links to slides presented 2021-03-23 and 03-30.</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1098TOVfY8dnFyZHlWH_PUcueBs3f8jbI/view?usp=sharing Delivering Platform Integrity Without Universal Secure Boot] Presented 2021-03-23 by Jeff Andersen<br />
<br />
:- [https://drive.google.com/file/d/1t4DZztlFjQwQ2qBc6x6XTox3lvAIFlQN/view?usp=sharing Recovery Spec Overview] Presented 2021-03-30 by Bryan Kelly<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=O1V3B2jU5TI March 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=LU4LI9TLJNQ March 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=6cU12vdrM2Q February 23rd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=10293
Security
2021-03-02T22:27:34Z
<p>Nate.klein: s/Anderson/Andersen/</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Andersen<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=10292
Security
2021-03-02T22:25:22Z
<p>Nate.klein: Added Google Position on Attested Boot Logs link</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
:- [https://drive.google.com/file/d/1fC5c8dMvS95OzWMClDrIXe7FjYMHeqZF/view?usp=sharing Google Position on Attested Boot Logs] Presented 2021-02-23 by Jeff Anderson<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=dl06fR5yIZY March 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=qZTPObaagao February 16th, 2021]<br />
:- [https://www.youtube.com/watch?v=6eJqBQiJUkc February 9th, 2021]<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=10116
Security
2021-02-09T20:31:29Z
<p>Nate.klein: Added Management Interface Requirements link</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
::- [https://docs.google.com/document/d/18dyizlg0betQTlad3nFY4jpXaG09QasQPVwCM572StY/edit?usp=sharing Management Interface Requirements]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=7TzAGcV6X8k February 2nd, 2021]<br />
:- [https://www.youtube.com/watch?v=BLyOdJxhRGU January 26th, 2021]<br />
:- [https://www.youtube.com/watch?v=c1hG52usLF4 January 19th, 2021]<br />
:- [https://www.youtube.com/watch?v=cSo_4BP7gFo January 12th, 2021]<br />
:- [https://www.youtube.com/watch?v=Xx176MGBr2A December 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=UiKjJ3ksJ3E November 3rd, 2020]<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=9806
Security
2020-11-30T19:51:58Z
<p>Nate.klein: Cleaned up document links, added section for blog posts and announcements</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
OCP blogs and announcements<br />
<br />
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]<br />
<br />
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]<br />
<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]<br />
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]<br />
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]<br />
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]<br />
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=9468
Security
2020-09-15T21:51:12Z
<p>Nate.klein: Moved Security Checklist link to works in progress</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Face to Face Meeting Minutes]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=9467
Security
2020-09-15T21:45:59Z
<p>Nate.klein: Added Security Checklist link</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Face to Face Meeting Minutes]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]<br />
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]<br />
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]<br />
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=9325
Security
2020-08-11T20:55:17Z
<p>Nate.klein: </p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Face to Face Meeting Minutes]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=9324
Security
2020-08-11T20:54:37Z
<p>Nate.klein: Added link to Ken Goldman preso</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Face to Face Meeting Minutes]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization (IBM) Presented 2020-08-18 by Ken Goldman]<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
===IC Representative===<br />
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)<br />
===Project Leads===<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]<br />
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]<br />
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]<br />
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]<br />
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]<br />
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]<br />
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]<br />
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]<br />
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]<br />
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]<br />
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]<br />
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]<br />
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]<br />
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]<br />
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]<br />
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=8569
Security
2019-11-12T16:37:18Z
<p>Nate.klein: /* Documents */</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Face to Face Meeting Minutes]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Past Events==<br />
<br />
F2F Meeting at Facebook, October 8-9th, 2019<br />
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]<br />
:- Recording coming soon<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]<br />
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]<br />
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]<br />
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]<br />
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=8209
Security
2019-06-05T18:33:58Z
<p>Nate.klein: </p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==OCP Regional Summit: September 26th - 27th, 2019==<br />
The [https://www.surveymonkey.com/r/PM9HDDW Call for Participation] for our Regional Summit is now open! If you are using OCP solutions in your infrastructure, if your software is running on OCP gear or if you are building products based on open specifications, we want to hear about it! Share your experiences, your challenges, your unique approach to OCP. If you are looking to adopt OCP, if you are willing to explore OCP solutions in your company or if you are interested in becoming a solution provider for OCP products or facilities, this is the conference for you. You can find more information [https://www.opencompute.org/summit/regional-summit/schedule here].<br />
<br />
==Documents==<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=8208
Security
2019-06-05T18:31:20Z
<p>Nate.klein: </p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==OCP Regional Summit: September 26th - 27th, 2019==<br />
The [https://www.surveymonkey.com/r/PM9HDDW Call for Participation] for our Regional Summit is now open! If you are using OCP solutions in your infrastructure, if your software is running on OCP gear or if you are building products based on open specifications, we want to hear about it! Share your experiences, your challenges, your unique approach to OCP. If you are looking to adopt OCP, if you are willing to explore OCP solutions in your company or if you are interested in becoming a solution provider for OCP products or facilities, this is the conference for you. You can find more information [https://www.opencompute.org/summit/regional-summit/schedule here].<br />
<br />
==Documents==<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
Reference<br />
<br />
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation]<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented on January 29th, 2019<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented on March 5th, 2019<br />
<br />
==Approved Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
<br />
==Recordings from Past Calls==<br />
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]<br />
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]<br />
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]<br />
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]<br />
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]<br />
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]<br />
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]<br />
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]<br />
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]<br />
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]<br />
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]<br />
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]<br />
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]<br />
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]<br />
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]<br />
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=7023
Security
2019-01-08T17:26:44Z
<p>Nate.klein: Added glossary and agenda links</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
==Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
<br />
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]<br />
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=6834
Security
2018-12-04T20:54:41Z
<p>Nate.klein: </p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
==Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein
https://www.opencompute.org/w/index.php?title=Security&diff=6831
Security
2018-12-04T20:53:50Z
<p>Nate.klein: added Publications section</p>
<hr />
<div>[[File:OCP-security-v1-17a3x.png|right]]<br />
==Welcome==<br />
<br />
: '''OCP Security Project'''<br />
<br />
:This Project is open to the public and we want to welcome all those who would like to be involved.<br />
<br />
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page. If you have any questions please contact OCP.<br />
<br />
==Documents==<br />
<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]<br />
<br />
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]<br />
<br />
Works in Progress<br />
<br />
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]<br />
<br />
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update]<br />
<br />
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]<br />
<br />
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]<br />
<br />
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit# Attestation: Use Cases]<br />
<br />
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]<br />
<br />
TODO<br />
<br />
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]<br />
<br />
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]<br />
<br />
==Publications==<br />
<br />
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]<br />
<br />
==Project Leadership==<br />
<br />
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)<br />
<br />
:- [mailto:bryan.kelly@ocproject.net Bryan Kelly] (Microsoft)<br />
<br />
==Get Involved==<br />
<br />
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]<br />
<br />
==Regular Project Calls==<br />
<br />
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).<br />
<br />
:- [https://www.opencompute.org/projects/security Call Calendar]<br />
:- [https://global.gotomeeting.com/join/271200085 Call Link]<br />
<br />
You can also dial in using your phone. <br />
United States: +1 (312) 757-3117<br />
Access Code: 271-200-085<br />
<br />
==Recordings from Past Calls==<br />
<br />
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]<br />
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]<br />
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]<br />
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]<br />
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]<br />
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]<br />
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]<br />
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]<br />
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]<br />
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]<br />
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]<br />
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]<br />
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=3057a4436d55cc2a1c9ba51989e8d903 Feb 20th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=ae43c3c6a9795f045ba4cee152d30d59 Feb 13th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=c38b4b5ad3f776b5bad5e6e932dd444f Feb 6th, 2018]<br />
:- [http://files.opencompute.org/oc/public.php?service=files&t=f850f89c21e8f5c531b36b8f311b444d Jan 30th, 2018]</div>
Nate.klein