note ID attestation will be optional

This commit is contained in:
Daniel Micay 2019-05-10 16:41:39 -04:00
parent 2c376223b0
commit d72d8e83aa

View File

@ -139,9 +139,9 @@ TMPDIR="$PWD/tmp" ./flash-all.sh</pre>
attestation root. Ideally, you should also do this before connecting the device to the attestation root. Ideally, you should also do this before connecting the device to the
network, so an attacker can't proxy to another device (which stops being possible network, so an attacker can't proxy to another device (which stops being possible
after the initial verification). Further protection against proxying the initial after the initial verification). Further protection against proxying the initial
pairing will be provided in the future via support for ID attestation to include the pairing will be provided in the future via optional support for ID attestation to
serial number in the hardware verified information to allow checking against the one include the serial number in the hardware verified information to allow checking
on the box / displayed in the bootloader. See the against the one on the box / displayed in the bootloader. See the
<a href="https://attestation.app/tutorial">Auditor tutorial</a> for a guide.</p> <a href="https://attestation.app/tutorial">Auditor tutorial</a> for a guide.</p>
<p>After the initial verification, which results in pairing, performing verification <p>After the initial verification, which results in pairing, performing verification
against between the same Auditor and Auditee (as long as the app data hasn't been against between the same Auditor and Auditee (as long as the app data hasn't been