OCP Tech Week 2020
Measurement and Attestation
Future products submitted to Open Compute Project for approval will implement measurement and attestation between the platform (server) and devices within it. This talk delves deeper into the Security Protocol and Data Model (SPDM), a DMTF standard protocol for measurement and attestation. Additionally, the protocol requires the use of reference integrity manifests (RIMs) or "gold measurements". This talk discusses draft standards for representing, safely delivering, and verifying the status of firmware using RIMs.