audit logs for root metadata changes
Nobody has claimed this yet.
Assessment
- Difficulty
- 5/5
- Estimated time
- Over a week
- Newbie friendliness
- 20/100
- Issue type
- Feature
- Clarity
- Needs clarification
- Activity status
- Stale
- Domain
- security
Research direction
Start by reviewing the TUF root metadata described in the issue and the examples of a signed root with a reason field. Determine whether tamper-resistant audit logging belongs in root metadata or a separate artifact, and document a concrete proposal with its scope and format.
Written by the indexing model from the issue text.
Description
Given the importance of the root metadata, changes made to it are quite important. I was recently tasked with keeping an audit log of such changes. The naive approach is to more or less add a new DB column and move on. However, when I start to think of the qualities such a solution needs such as being tamper resistant, I start wonder if this shouldn't be optionally supported (or even recommended) in the TUF spec? For example, maybe we could add a new optional attribute to the signed root metadata reason. Maybe a free form string or some free form object. e.g:
signed:
_Type: Root
expires: 2022-08-19T16:23:01Z
version: 2
reason: User(1234) rotated root key that were due to expire
then we add a new targets signing key and get
signed:
_Type: Root
expires: 2022-09-19T16:23:01Z
version: 3
reason: User(456) added targets keyid 1234
I'm not totally sure this belongs in the root metadata and might need to be its own new artifact. Just curious if people had thought about this and if there was interest in something along these lines?
- Dominant language
- No language data
- Stars
- 37
- Forks
- 23
- PR merge metrics
- No merged PRs in 30d
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
More from theupdateframework/taps
-
Difficulty 5/5 Over a week Newbie friendliness 42/100
theupdateframework/taps#194 ·
-
Difficulty 5/5 Over a week Newbie friendliness 20/100
theupdateframework/taps#191 · 8 comments ·
-
Difficulty 5/5 Over a week Newbie friendliness 25/100
theupdateframework/taps#190 · 19 comments · 1 reaction ·
-
Difficulty 4/5 3-5 days Newbie friendliness 32/100
theupdateframework/taps#178 · 1 comment · 1 reaction ·
-
Difficulty 5/5 Over a week Newbie friendliness 25/100
theupdateframework/taps#177 · 1 comment · 3 reactions ·
All issues in theupdateframework/taps
Similar issues
-
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
AXERA-TECH/ax-llm#75 ·
-
bug
Difficulty 2/5 1-3 hours Newbie friendliness 68/100
gitbutlerapp/gitbutler#15998 · 1 comment ·
-
Difficulty 2/5 1-3 hours Newbie friendliness 78/100
sympozium-ai/sympozium#627 ·
-
clawsweeper:needs-product-decision clawsweeper:no-new-fix-pr clawsweeper:source-repro impact:security impact:ux-friction issue-rating: 🦞 diamond lobster P2
Difficulty 2/5 1-3 hours Newbie friendliness 84/100
-
enhancement
Difficulty 2/5 1-3 hours Newbie friendliness 76/100
TheManticoreProject/Manticore#1383 ·