Hi Mike, a couple of data points inline. On Mon, 15 Dec 2025 at 18:24, Mike Ounsworth <[email protected]> wrote: > I am going to make a maybe bold statement here. I have seen Evidence -- I've > played with TPM attestation, I've seen PSA Tokens, I'm designing the > PKIX-Key-Attest format. But I have never seen an AR. I've never actually held > one in my hand. I find these discussions about what features should and > should not be supported for ARs to be rather too abstract.
EARs are currently output by Veraison (e.g., [1]) and Trustee [2], the Confidential Containers verifier. This applies to all supported attesters, including Arm CCA, Intel TDX, AMD SEV-SNP, PSA and others. [1] https://github.com/veraison/services/blob/main/scheme/sevsnp/evidence_handler.go#L460 [2] https://github.com/confidential-containers/trustee/tree/main/attestation-service/src/ear_token cheers, t _______________________________________________ Acme mailing list -- [email protected] To unsubscribe send an email to [email protected]
