Difference between revisions of "Security"

From OpenCompute
Jump to: navigation, search
(Documents)
(Cleaned up document links, added section for blog posts and announcements)
 
(114 intermediate revisions by 4 users not shown)
Line 1: Line 1:
 +
[[File:OCP-security-v1-17a3x.png|right]]
 
==Welcome==
 
==Welcome==
  
Line 5: Line 6:
 
:This Project is open to the public and we want to welcome all those who would like to be involved.
 
:This Project is open to the public and we want to welcome all those who would like to be involved.
  
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the [[http://www.opencompute.org/participate/legal-documents/ Legal Docs]] page.  If you have any questions please contact OCP.
+
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP [http://www.opencompute.org/about/ocp-policies/ OCP Policies] page.  If you have any questions please contact OCP.
  
 
==Documents==
 
==Documents==
  
:- [http://files.opencompute.org/oc/public.php?service=files&t=f8dd17084086d3fc7b3cc82c13160c31&downoad Charter]]
+
:- [https://146a55aca6f00848c565-a7635525d40ac1c70300198708936b4e.ssl.cf1.rackcdn.com/files/e1db398bce18523d1cbecd13cc60688c942a5d5c.pdf Charter]
  
:- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats Notes]
+
:- [https://docs.google.com/spreadsheets/d/1o5Vx8QFfHX_AO9pNw5wEjVNeCQ516P55ef71dhz4f6M/edit#gid=0 Meeting Agenda]
  
:- [https://docs.google.com/document/d/1EvlqpTiBu499kZkaZWHenO_0BzB1MbNDsxtfSt_FIRQ/edit Security Project Specifications]
+
Works in Progress
  
:- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation of Systems and System Components]
+
::- [https://docs.google.com/document/d/1NaWTRfXgNTiRzp8EnsYKjudo3z2lrdDK0dPyqer0DgU/edit# Glossary]
  
:- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]
+
::- [https://docs.google.com/document/d/13I-meE6BxiLB_c-Mjr3cLLK9S0SjuPuRjPfS9yTG6P8/edit Common Security Threats]
 +
 
 +
::- [https://docs.google.com/document/d/1Tea1Nfg9T5R7O-pVtorGhQ0UHQzCdMBMckT2hJfBKB8/edit Secure Update and Recovery]
 +
 
 +
::- [https://docs.google.com/document/d/1I1eNJvB9oFjnD8oiEBRK5SGFGhKW8AqxrLOqBSzSYoQ/edit Attestation Scope]
 +
 
 +
:::- [https://docs.google.com/document/d/1fzBnA6N9vGYj--Mxit9Whp0TPPyGqgOyBlHdgCN9F_Q/edit Attestation of Systems and System Components]
 +
 
 +
:::- [https://docs.google.com/document/d/1DQGXpOEliExRPil4ozr8A50nibJpGAvAH1PW0uZRZrA/edit Attestation: Use Cases]
 +
 
 +
::- [https://docs.google.com/document/d/1Se1Dd-raIZhl_xV3MnECeuu_I0nF-keg4kqXyK4k4Wc/edit Secure Boot]
 +
 
 +
::- [https://docs.google.com/spreadsheets/d/1Tu42ZawQoaWqgqC5lY-PNdw48QsILyjI/edit#gid=1174137179 Security Checklist and Badges]
 +
 
 +
OCP blogs and announcements
 +
 
 +
::- [https://www.opencompute.org/blog/ocp-security-announces-version-10-specs-for-root-of-trust Fall 2020 OCP Tech Week Blog Post]
 +
 
 +
::- [https://www.prnewswire.com/news-releases/ocp-announces-v1-0-of-security-requirements-documents-improving-security-and-trust-for-future-ocp-servers-with-hardware-root-of-trust-301169974.html Fall 2020 PR Newswire Announcement]
 +
 
 +
 
 +
Reference
 +
 
 +
:- [https://drive.google.com/open?id=13LwglwJ3n9KA8Q5IzBNGjDwYN-TVAeYs Certificate Templates for DICE Attestation] (Intel) Presented 2019-04-30
 +
 
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=a436c2418eabd27679f770fbd8621d40&download SPIRAL Protocol Family] (Intel) Presented 2019-01-29
 +
 
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=ca33b44f612f8c09db827b610c4d1c54 SPIRAL Protocol Family] (Intel) Presented 2019-03-05
 +
 
 +
:- [https://drive.google.com/file/d/1q8sSnFtbRuSmYxyKHOLMNBJqLNekBsDL/view?usp=sharing Trusted Platform Module 2.0 Policy Authorization] (IBM) Presented 2020-08-18 by Ken Goldman
 +
 
 +
:- [https://github.com/opencomputeproject/Security/blob/master/SecureFirmwareDevelopmentBestPractices.md CSIS Firmware Development Best Practices]
 +
 
 +
==Approved Publications==
 +
 
 +
::- [http://files.opencompute.org/oc/public.php?service=files&t=f4171bae8c7a32f05b0401378ee08483&download INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM]
  
 
==Project Leadership==
 
==Project Leadership==
  
 +
===IC Representative===
 +
:- [mailto:elaine.palmer@ocproject.net Elaine Palmer] (IBM)
 +
===Project Leads===
 
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)
 
:- [mailto:nate.klein@ocproject.net Nate Klein] (Google)
  
Line 27: Line 66:
 
==Get Involved==
 
==Get Involved==
  
:- [http://lists.opencompute.org/mailman/listinfo/opencompute-security Mailing List]
+
:- [https://ocp-all.groups.io/g/OCP-Security Mailing List]
 +
 
 +
==Past Events==
 +
 
 +
F2F Meeting at Facebook, October 8-9th, 2019
 +
:- [https://docs.google.com/document/d/1pdIm7drr75HvZry7dzM2Ts-b8z-UuwhkjPIdrrPZROQ/edit Meeting Notes]
 +
:- Recording coming soon
  
 
==Regular Project Calls==
 
==Regular Project Calls==
  
Weekly on Tuesdays at 8:30am PT
+
This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).
  
:- [https://attendee.gotowebinar.com/register/6288548291744629762 Registration URL]
+
:- [https://www.opencompute.org/projects/security Call Calendar]
:- Webinar ID: 444-595-163
+
:- [https://global.gotomeeting.com/join/271200085 Call Link]
 +
 
 +
You can also dial in using your phone.
 +
United States: +1 (312) 757-3117
 +
Access Code: 271-200-085
  
 
==Recordings from Past Calls==
 
==Recordings from Past Calls==
 
+
:- [https://www.youtube.com/watch?v=qzBK50yngEo October 27th, 2020]
 +
:- [https://www.youtube.com/watch?v=ePE3e1eGoj4 October 20th, 2020]
 +
:- [https://www.youtube.com/watch?v=tgCf9aPCuzQ October 13th, 2020]
 +
:- [https://www.youtube.com/watch?v=kAsDr49AEc0 October 6th, 2020]
 +
:- [https://www.youtube.com/watch?v=VDZf2J6T9LQ September 22nd, 2020]
 +
:- [https://www.youtube.com/watch?v=Yejvc0LWUl0 September 15th, 2020]
 +
:- [https://www.youtube.com/watch?v=WH9kBfDp6Yo September 8th, 2020]
 +
:- [https://www.youtube.com/watch?v=lwNSrUE7xWI September 1st, 2020]
 +
:- [https://www.youtube.com/watch?v=Tyu6SRWqvdo August 25th, 2020]
 +
:- [https://www.youtube.com/watch?v=Eq1Vo_vycuQ August 18th, 2020]
 +
:- [https://www.youtube.com/watch?v=RoK6yL4mag0 August 11th, 2020]
 +
:- [https://www.youtube.com/watch?v=jR9yKYTDgVE July 28th, 2020]
 +
:- [https://www.youtube.com/watch?v=szPKyB0qqJM July 21st, 2020]
 +
:- [https://www.youtube.com/watch?v=Jfx4EYslwc8 July 14th, 2020]
 +
:- [https://www.youtube.com/watch?v=TbEPgi3rxc0 July 7th, 2020]
 +
:- [https://www.youtube.com/watch?v=cz2XPx0yqco June 23rd, 2020]
 +
:- [https://www.youtube.com/watch?v=Rdf4xQuPgh8 June 16th, 2020]
 +
:- [https://www.youtube.com/watch?v=T2RKKvyVaP4&feature=youtu.be June 2nd, 2020]
 +
:- [https://www.youtube.com/watch?v=2BvBu_HREE8&feature=youtu.be May 26th, 2020]
 +
:- [https://www.youtube.com/watch?v=3MWnIn4yt_4&feature=youtu.be May 19th, 2020]
 +
:- [https://www.youtube.com/watch?v=Vkayga62o5c&feature=youtu.be May 5th, 2020]
 +
:- [https://www.youtube.com/watch?v=rNd4HtoCmz4&feature=youtu.be April 28th, 2020]
 +
:- [https://www.youtube.com/watch?v=RgiePwvNdNg&feature=youtu.be April 21st, 2020]
 +
:- [https://www.youtube.com/watch?v=Tj-_Ky_Y8M0&feature=youtu.be April 14th, 2020]
 +
:- [https://www.youtube.com/watch?v=1sJmH5lgZPo&feature=youtu.be March 24th, 2020]
 +
:- [https://www.youtube.com/watch?v=im6Ty3Tac4o&feature=youtu.be March 10th, 2020]
 +
:- [https://www.youtube.com/watch?v=z24f-3zbqnI&feature=youtu.be February 11th, 2020]
 +
:- [https://www.youtube.com/watch?v=LM_jN3s7rKM&feature=youtu.be February 4th, 2020]
 +
:- [https://www.youtube.com/watch?v=gqG0wVv41gY&feature=youtu.be January 7th, 2019]
 +
:- [https://www.youtube.com/watch?v=8Ok9OAID3ik&feature=youtu.be December 17th, 2019]
 +
:- [https://www.youtube.com/watch?v=2VuoffCklfo&feature=youtu.be November 12th, 2019]
 +
:- [https://www.youtube.com/watch?v=Ol8bzwD-lUE&feature=youtu.be October 15th, 2019]
 +
:- [https://www.youtube.com/watch?v=M68vyQrgM3w&feature=youtu.be September 3rd, 2019]
 +
:- [https://www.youtube.com/watch?v=w4si5tYTT1A&feature=youtu.be August 27th, 2019]
 +
:- [https://www.youtube.com/watch?v=HlJLR0xn4UE&feature=youtu.be August 20th, 2019]
 +
:- [https://www.youtube.com/watch?v=LhGeaCL943I&feature=youtu.be August 13th, 2019]
 +
:- [https://www.youtube.com/watch?v=4GUiorf-YCo&feature=youtu.be July 30th, 2019]
 +
:- [https://www.youtube.com/watch?v=hSSmlx1Nm5I&feature=youtu.be July 23rd, 2019]
 +
:- [https://www.youtube.com/watch?v=EEgkoMGcPiU&feature=youtu.be July 16th, 2019]
 +
:- [https://www.youtube.com/watch?v=3UN798XFrUY&feature=youtu.be July 9th, 2019]
 +
:- [https://www.youtube.com/watch?v=jGNcWCH-0rE&feature=youtu.be June 18th, 2019]
 +
:- [https://www.youtube.com/watch?v=DLfkA4pRw2Q&feature=youtu.be May 28th, 2019]
 +
:- [https://www.youtube.com/watch?v=0zZeF4uSk-M&feature=youtu.be May 14th, 2019]
 +
:- [https://www.youtube.com/watch?v=_vh0Fk8DBUA&feature=youtu.be May 7th, 2019]
 +
:- [https://www.youtube.com/watch?v=Ck0Qv33hYdE&feature=youtu.be April 30th, 2019]
 +
:- [https://www.youtube.com/watch?v=y3A8-1ET_Ms&feature=youtu.be April 23rd, 2019]
 +
:- [https://www.youtube.com/watch?v=z3ITiHlYyJU&feature=youtu.be April 16th, 2019]
 +
:- [https://www.youtube.com/watch?v=aNCD-YNVTR4&feature=youtu.be Apr 9th, 2019]
 +
:- [https://www.youtube.com/watch?v=at2Kq2x5luM&feature=youtu.be Apr 2nd, 2019]
 +
:- [https://www.youtube.com/watch?v=Kvdr_SzN2Nc&feature=youtu.be Mar 26th, 2019]
 +
:- [https://www.youtube.com/watch?v=1fhxXMMs9Zk&feature=youtu.be Mar 19th, 2019]
 +
:- [https://www.youtube.com/watch?v=uQ52ObekdXY&feature=youtu.be Mar 5th, 2019]
 +
:- [https://www.youtube.com/watch?v=1BqV1NBzhZc&feature=youtu.be Feb 26th, 2019]
 +
:- [https://www.youtube.com/watch?v=w2-60OLnX-k&feature=youtu.be Feb 19th, 2019]
 +
:- [https://www.youtube.com/watch?v=pWVeaMaWVl0&feature=youtu.be Feb 12th, 2019]
 +
:- [https://www.youtube.com/watch?v=4vQ8rICw5mI&feature=youtu.be Feb 5th, 2019]
 +
:- [https://www.youtube.com/watch?v=dKbtjJlXYKY&feature=youtu.be Jan 29th, 2019]
 +
:- [https://www.youtube.com/watch?v=7WfkKN5yV34&feature=youtu.be Jan 22nd, 2019]
 +
:- [https://www.youtube.com/watch?v=TI4aHvWLc4w&feature=youtu.be Jan 15th, 2019]
 +
:- [https://www.youtube.com/watch?v=XyJKEDu8cjo&feature=youtu.be Jan 8th, 2019]
 +
:- [https://www.youtube.com/watch?v=See1djFaW3I&feature=youtu.be Dec 18th, 2018]
 +
:- [https://www.youtube.com/watch?v=DSo_SM2MUT8&feature=youtu.be Dec 11th, 2018]
 +
:- [https://www.youtube.com/watch?v=52YlwXUdp5k&feature=youtu.be Dec 4th, 2018]
 +
:- [https://www.youtube.com/watch?v=UrDAbJBHzq0&feature=youtu.be Nov 27th, 2018]
 +
:- [https://www.youtube.com/watch?v=8jxBB1NemNE&feature=youtu.be Nov 13th, 2018]
 +
:- [https://www.youtube.com/watch?v=k32q6Qv96q4&feature=youtu.be Nov 6th, 2018]
 +
:- [https://www.youtube.com/watch?v=KoRenm2G_rM&feature=youtu.be Oct 16th, 2018]
 +
:- [https://www.youtube.com/watch?v=ylZJ_AHOjV8&feature=youtu.be Oct 9th, 2018]
 +
:- [https://www.youtube.com/watch?v=thl-5pY11Bg&feature=youtu.be Sep 25th, 2018]
 +
:- [https://www.youtube.com/watch?v=PsB0cuqXzkY&feature=youtu.be Sep 11th, 2018]
 +
:- [https://www.youtube.com/watch?v=3I2ldWKCLr0&feature=youtu.be Sep 4th, 2018]
 +
:- [https://www.youtube.com/watch?v=jRZcZiv3mJk&feature=youtu.be Aug 21st, 2018]
 +
:- [https://www.youtube.com/watch?v=JIckrFRAfzU&feature=youtu.be Aug 7th, 2018]
 +
:- [https://www.youtube.com/watch?v=BJjO99PVgZ0&feature=youtu.be Jul 24th, 2018]
 +
:- [https://www.youtube.com/watch?v=wDrboKyKiFw&feature=youtu.be Jul 17th, 2018]
 +
:- [https://www.youtube.com/watch?v=UVAWGNQ965g&feature=youtu.be Jun 19th, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=b549870fbb0a46be1269e8b5f27b8049 Jun 5th, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=2f445f60e42f4aee28b490b84f9898df May 29, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=710ea264101131f35033df1fe77c3b3c May 1st, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=16101539e889f2880f04d9234357c2a5 Apr 24th, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=28f1715334fb1b176849ef7bd359ca15 Apr 3rd, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=58be128cde0d7b60870d18872e2c810e Mar 27th, 2018]
 +
:- [http://files.opencompute.org/oc/public.php?service=files&t=9fb458813a87c0dd0464550258b54297 Mar 13th, 2018]
 
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]
 
:- [http://files.opencompute.org/oc/public.php?service=files&t=487721146cb9bb856a5592f9b22adfc4 Mar 6th, 2018]
 
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]
 
:- [http://files.opencompute.org/oc/public.php?service=files&t=a8f3c7470d6f928f998793d3ed904a77 Feb 27th, 2018]

Latest revision as of 13:51, 30 November 2020

OCP-security-v1-17a3x.png

Welcome

OCP Security Project
This Project is open to the public and we want to welcome all those who would like to be involved.

Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP OCP Policies page. If you have any questions please contact OCP.

Documents

- Charter
- Meeting Agenda

Works in Progress

- Glossary
- Common Security Threats
- Secure Update and Recovery
- Attestation Scope
- Attestation of Systems and System Components
- Attestation: Use Cases
- Secure Boot
- Security Checklist and Badges

OCP blogs and announcements

- Fall 2020 OCP Tech Week Blog Post
- Fall 2020 PR Newswire Announcement


Reference

- Certificate Templates for DICE Attestation (Intel) Presented 2019-04-30
- SPIRAL Protocol Family (Intel) Presented 2019-01-29
- SPIRAL Protocol Family (Intel) Presented 2019-03-05
- Trusted Platform Module 2.0 Policy Authorization (IBM) Presented 2020-08-18 by Ken Goldman
- CSIS Firmware Development Best Practices

Approved Publications

- INFO, White Paper, Ownership and Control of Firmware in Open Compute Project Devices, IBM

Project Leadership

IC Representative

- Elaine Palmer (IBM)

Project Leads

- Nate Klein (Google)
- Bryan Kelly (Microsoft)

Get Involved

- Mailing List

Past Events

F2F Meeting at Facebook, October 8-9th, 2019

- Meeting Notes
- Recording coming soon

Regular Project Calls

This project meets weekly on Tuesdays at 8:30am PT (please check the call calendar).

- Call Calendar
- Call Link

You can also dial in using your phone. United States: +1 (312) 757-3117 Access Code: 271-200-085

Recordings from Past Calls

- October 27th, 2020
- October 20th, 2020
- October 13th, 2020
- October 6th, 2020
- September 22nd, 2020
- September 15th, 2020
- September 8th, 2020
- September 1st, 2020
- August 25th, 2020
- August 18th, 2020
- August 11th, 2020
- July 28th, 2020
- July 21st, 2020
- July 14th, 2020
- July 7th, 2020
- June 23rd, 2020
- June 16th, 2020
- June 2nd, 2020
- May 26th, 2020
- May 19th, 2020
- May 5th, 2020
- April 28th, 2020
- April 21st, 2020
- April 14th, 2020
- March 24th, 2020
- March 10th, 2020
- February 11th, 2020
- February 4th, 2020
- January 7th, 2019
- December 17th, 2019
- November 12th, 2019
- October 15th, 2019
- September 3rd, 2019
- August 27th, 2019
- August 20th, 2019
- August 13th, 2019
- July 30th, 2019
- July 23rd, 2019
- July 16th, 2019
- July 9th, 2019
- June 18th, 2019
- May 28th, 2019
- May 14th, 2019
- May 7th, 2019
- April 30th, 2019
- April 23rd, 2019
- April 16th, 2019
- Apr 9th, 2019
- Apr 2nd, 2019
- Mar 26th, 2019
- Mar 19th, 2019
- Mar 5th, 2019
- Feb 26th, 2019
- Feb 19th, 2019
- Feb 12th, 2019
- Feb 5th, 2019
- Jan 29th, 2019
- Jan 22nd, 2019
- Jan 15th, 2019
- Jan 8th, 2019
- Dec 18th, 2018
- Dec 11th, 2018
- Dec 4th, 2018
- Nov 27th, 2018
- Nov 13th, 2018
- Nov 6th, 2018
- Oct 16th, 2018
- Oct 9th, 2018
- Sep 25th, 2018
- Sep 11th, 2018
- Sep 4th, 2018
- Aug 21st, 2018
- Aug 7th, 2018
- Jul 24th, 2018
- Jul 17th, 2018
- Jun 19th, 2018
- Jun 5th, 2018
- May 29, 2018
- May 1st, 2018
- Apr 24th, 2018
- Apr 3rd, 2018
- Mar 27th, 2018
- Mar 13th, 2018
- Mar 6th, 2018
- Feb 27th, 2018
- Feb 20th, 2018
- Feb 13th, 2018
- Feb 6th, 2018
- Jan 30th, 2018