note ID attestation will be optional

This commit is contained in:
Daniel Micay 2019-05-10 16:41:39 -04:00
parent 2c376223b0
commit d72d8e83aa

View File

@ -139,9 +139,9 @@ TMPDIR="$PWD/tmp" ./flash-all.sh</pre>
attestation root. Ideally, you should also do this before connecting the device to the
network, so an attacker can't proxy to another device (which stops being possible
after the initial verification). Further protection against proxying the initial
pairing will be provided in the future via support for ID attestation to include the
serial number in the hardware verified information to allow checking against the one
on the box / displayed in the bootloader. See the
pairing will be provided in the future via optional support for ID attestation to
include the serial number in the hardware verified information to allow checking
against the one on the box / displayed in the bootloader. See the
<a href="https://attestation.app/tutorial">Auditor tutorial</a> for a guide.</p>
<p>After the initial verification, which results in pairing, performing verification
against between the same Auditor and Auditee (as long as the app data hasn't been