Skip to content

Conversation

@parvathib
Copy link
Collaborator

This PR adds validation scripts for handling EAT retrieved as an SPDM Measurement block at index 0xfd. A randomly generated requester Nonce is used for EAT freshness validation.
Key changes:
• Add python scripts to parse and validate EAT data from SPDM measurement blocks.
• Authenticate the EAT Attestation Key (AK) with the slot 0 certificate chain before EAT signature verification.
• Validate signature, extract and process EAT claims in JSON format for downstream use. (currently only limited to nonce verification)

@parvathib parvathib marked this pull request as draft December 1, 2025 20:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants