Identity
Measurement
Lifecycle
Manufacturer Identity aligned to TCG DICE
Code & configuration posture of the device.
Debug mode (ON/OFF), modes of operation
Attestation
Identity & Measurement reporting
Ownership
Vendor authored firmware only, with stateless Owner Authorization
SoC
Caliptra
Fuses
ROM
CPU
Cryptos
Analog, TRNG
SRAM
IOs
Hardware
Mutable Firmware
Identity
Measurement
Authentication
Attestation
What is Root of Trust
Set of security primitives that form the foundation for building more advance security features
Industry fragmentation…
There are many solutions...
Many deficiencies…
Root of Trust – State of the Industry
Consistency of security primitives that underpin higher-level capabilities and operational behaviors.
Caliptra (Spanish, ’root tip’) an open-source silicon Root of Trust
Transparency of security mechanisms of confidential cloud devices.
What is Caliptra
Why Consistency is Important
Confidential device measurements are tenant visible
Interoperability, components intercommunicate and report to measurement
Functional consistency across operational flows, tightly coupled to life-cycle and live-site
CPU
BMC
Accelerator
NIC
Microsoft
Azure Attestation
System Interoperability
�RoT A
RoT B
No RoT
End User
Heterogeneity of RoT implementations is massive drain on our: operations; customer experience
Tenant Experience
Transparency on what enters and leaves, not explicitly what's inside.
Caliptra, focuses on monitoring ingestion points
Lower silicon burden of proof through transparency of RoT, narrows verification and audit.
Caliptra akin to a door that records entry into a room, don’t care about décor, just security at entry and exit
Transparency builds trust… provides assurance of the hardware mechanics for measurement
Root-of-Trust is a foundational hardware security primitive that bootstraps higher-level security capabilities
Why Transparency is important
Caliptra – HW View
Caliptra – Cryptos & Operations
Key Vault
PCR Vault
Cryptos
Caliptra - Status
Caliptra was open sourced on October 18th, 2022 with multiple partners planning products.
Microsoft, Google, AMD, Nvidia are founding project partners.
Built supporting industry standards; TCG DICE, DMTF SPDM, OCP Secure-boot, Attestation, Recovery.
Supply Chain
Integrity Data Model
Requirements
Design (RTL & ROM) release v1.0 on January 18, 2024. Run-time FW released March 11, 2024.
Project Caliptra Next Steps
Development & Discussions in the open – no more NDA requirements (CLA is still required)
CHIPSALLIANACE Caliptra Public WG meeting – Every Friday 9am PST
Call for Action
Acronyms
Acronym | Name | Description |
DICE | Device Identity Composition Engine | Hardware engine for attestation |
DMTF | Distributed Management Task Force | Standards body for protocols |
DSM | Device Security Manager | TDISP terminology for RoT that controls device security. |
ROM | Read Only Memory | Immutable code that initializes a chip. |
ROT | Root of Trust | Hardware security anchor for establishing trust. |
SPDM | Security Protocol Data Model | Protocol for secure session setup |
TCG | Trusted Computing Group | Standards body for attestation standards. |
TDISP | TEE Device Interconnect Security Protocol | PCIe standard for confidential compute devices. |
TRNG | True Random Number Generator | Entropy generation for keys. |
APB | AMBA Peripheral Bus | Industry Standard Side-band Bus |
PCR | Platform Config Registers | ‘Entity’ to hold platform config as a hash/measurement |