Re: Publish enterprise.platformKeysPrivate methods

5 views
Skip to first unread message

Darren Krahn

unread,
Feb 8, 2016, 6:04:50 PM2/8/16
to apps-dev, securit...@chromium.org, Saswat Panigrahi, Philipp Neubeck, Dennis Kalinichenko
... and again from my chromium account.

On Mon, Feb 8, 2016 at 3:02 PM, Darren Krahn <dkr...@google.com> wrote:
We would like to take the methods currently in enterprise.platformKeysPrivate (which enable remote attestation of hardware-backed keys for Chromebooks) and move them to enterprise.platformKeys. These methods have remained private pending enterprise server support and trusted tester involvement, both of which are now satisfied.

The original proposal for enterprise.platformKeysPrivate is here.

The original proposal for enterprise.platformKeys is here.

The enterprise policy controls on enterprise.platformKeys will remain unchanged. The policy controls on remote attestation (aka "Verified Access") features which are enforced by these methods will also remain unchanged.

The enterprise.platformKeysPrivate API will continue to exist until all internal and TT customers have migrated over to enterprise.platformKeys.

The launch bug is here.

Concerns, comments, and questions welcome!

Darren

Reply all
Reply to author
Forward
0 new messages