Security: Difference between revisions

From OpenCompute
Jump to navigation Jump to search
(54 intermediate revisions by 2 users not shown)
Line 1: Line 1:
[[File:OCP-security-v1-17a3x.png|right]]
==Welcome==
==Welcome==


Line 6: Line 7:


Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page.  If you have any questions please contact OCP.
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page.  If you have any questions please contact OCP.
==OCP Regional Summit: September 26th - 27th, 2019==
The [https://www.surveymonkey.com/r/PM9HDDW Call for Participation] for our Regional Summit is now open! If you are using OCP solutions in your infrastructure, if your software is running on OCP gear or if you are building products based on open specifications, we want to hear about it! Share your experiences, your challenges, your unique approach to OCP. If you are looking to adopt OCP, if you are willing to explore OCP solutions in your company or if you are interested in becoming a solution provider for OCP products or facilities, this is the conference for you. You can find more information [https://www.opencompute.org/summit/regional-summit/schedule here].


==Documents==
==Documents==
Line 12: Line 16:


:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications (Top Level Doc)]
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]


Works in Progress
Works in Progress
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]


::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]
Line 26: Line 34:


::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]
TODO


::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]
::- [https://docs.google.com/document/d/1kP9LLHSkMZetqL3K1q32DnG_y4Scb_mKZp3-gMfeGPA/edit Hardware Interface]


::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]
::- [https://docs.google.com/document/d/1lCUGMOTLtIUrvgkCdwQgz570-ZEKSXimsagFPjBYCYc/edit Recovery]
Reference
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05
==Approved Publications==
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]


==Project Leadership==
==Project Leadership==
Line 41: Line 59:
==Get Involved==
==Get Involved==


:- [http://lists.opencompute.org/mailman/listinfo/opencompute-security Mailing List]
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]


==Regular Project Calls==
==Regular Project Calls==


Weekly on Tuesdays at 8:30am PT
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).


:- [https://www.opencompute.org/projects/security Call Calendar]
:- [https://global.gotomeeting.com/join/271200085 Call Link]
:- [https://global.gotomeeting.com/join/271200085 Call Link]


Line 52: Line 71:
United States: +1 (312) 757-3117
United States: +1 (312) 757-3117
Access Code: 271-200-085
Access Code: 271-200-085


==Recordings from Past Calls==
==Recordings from Past Calls==
 
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]

Revision as of 18:29, 3 September 2019

OCP-security-v1-17a3x.png

Welcome

OCP Security Project
This Project is open to the public and we want to welcome all those who would like to be involved.

Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP OCP Policies page. If you have any questions please contact OCP.

OCP Regional Summit: September 26th - 27th, 2019

The Call for Participation for our Regional Summit is now open! If you are using OCP solutions in your infrastructure, if your software is running on OCP gear or if you are building products based on open specifications, we want to hear about it! Share your experiences, your challenges, your unique approach to OCP. If you are looking to adopt OCP, if you are willing to explore OCP solutions in your company or if you are interested in becoming a solution provider for OCP products or facilities, this is the conference for you. You can find more information here.

Documents

- Charter
- Security Project Specifications (Top Level Doc)
- Meeting Agenda

Works in Progress

- Glossary
- Common Security Threats
- Secure Update
- Attestation Scope
- Attestation of Systems and System Components
- Attestation: Use Cases
- Secure Boot
- Hardware Interface
- Recovery

Reference

- Certificate Templates for DICE Attestation (Intel) Presented 2019-04-30
- SPIRAL Protocol Family (Intel) Presented 2019-01-29
- SPIRAL Protocol Family (Intel) Presented 2019-03-05

Approved Publications

- INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM

Project Leadership

- Nate Klein (Google)
- Bryan Kelly (Microsoft)

Get Involved

- Mailing List

Regular Project Calls

This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).

- Call Calendar
- Call Link

You can also dial in using your phone. United States: +1 (312) 757-3117 Access Code: 271-200-085


Recordings from Past Calls

- September 3rd, 2019
- August 27th, 2019
- August 20th, 2019
- August 13th, 2019
- July 30th, 2019
- July 23rd, 2019
- July 16th, 2019
- July 9th, 2019
- June 18th, 2019
- May 28th, 2019
- May 14th, 2019
- May 7th, 2019
- April 30th, 2019
- April 23rd, 2019
- April 16th, 2019
- Apr 9th, 2019
- Apr 2nd, 2019
- Mar 26th, 2019
- Mar 19th, 2019
- Mar 5th, 2019
- Feb 26th, 2019
- Feb 19th, 2019
- Feb 12th, 2019
- Feb 5th, 2019
- Jan 29th, 2019
- Jan 22nd, 2019
- Jan 15th, 2019
- Jan 8th, 2019
- Dec 18th, 2018
- Dec 11th, 2018
- Dec 4th, 2018
- Nov 27th, 2018
- Nov 13th, 2018
- Nov 6th, 2018
- Oct 16th, 2018
- Oct 9th, 2018
- Sep 25th, 2018
- Sep 11th, 2018
- Sep 4th, 2018
- Aug 21st, 2018
- Aug 7th, 2018
- Jul 24th, 2018
- Jul 17th, 2018
- Jun 19th, 2018
- Jun 5th, 2018
- May 29, 2018
- May 1st, 2018
- Apr 24th, 2018
- Apr 3rd, 2018
- Mar 27th, 2018
- Mar 13th, 2018
- Mar 6th, 2018
- Feb 27th, 2018
- Feb 20th, 2018
- Feb 13th, 2018
- Feb 6th, 2018
- Jan 30th, 2018