Networking Device Attestation and CoRIM-based Reference Measurement Sharing

ConnectX-8 Measurements

The measurement specification for all the indexes listed in the table below is: 0x01 (DMTF).

The CoRIM files include the same measurement block definition encoded in base64 format, as outlined below. If the table indicates "Yes" under the "Part of CoRIM" column, the index is included in the CoRIM file; otherwise, it is excluded.

Version 1.3.0

Index

Measurement

Value

Description

What is measured?

Part of CoRIM

1

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Interpret as Semver2.0 ((https://semver.org/).
Byte 3: Major Version
Byte 2-1: Minor Version
Byte 0: is patch

Yes

DMTFSpecMeasurementValueSize

4

4-byte unsigned Integer, little endian

2

DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of PSC FW

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

3

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

4

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM NIC FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

5

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

6

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA NIC FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

7

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW version number

Yes

DMTFSpecMeasurementValueSize

9

9 bytes, unsigned Integer, little endian

8

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

9

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

10

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

1

1 byte, unsigned Integer, little endian

11

DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of NIC FW

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

12

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of hardware configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

13

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of instance-based hardware configuration

No

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

14

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Debug tokens status:

Device Runtime Status (32-bit)
Bit 0-1: Runtime token (customer support)
Bit 2-3: Debug FW Token
Bit 4-5: FRC token
Bit 6-31: reserved

Each pair consists of:
Bit 0: Runtime Token Applied Since Last Reset (1 bit)
Bit 1: Runtime Token Currently In Use (1 bit)

Yes, reported with all bits clear.

DMTFSpecMeasurementValueSize

4

32-bit, unsigned integer, little endian

15

DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-0; This should be the same as TCG-OID extension in L5 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

16

DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-1; This should be the same as TCG-OID extension in L6 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

17

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

Device identifier (DID, VID, SVID, SID) as defined by PCISIG and a vendor defined byte.
Byte 1:2 - Vendor ID
Byte 3:4 - Device ID
Byte 5:6 - Subsystem Vendor ID
Byte 7:8 - Subsystem ID
Byte 9 - Vendor defined byte

All multi-byte fields are little endian (uint16_t)

Yes (also in CoMID tag-id);

DMTFSpecMeasurementValueSize

9

Raw bitstream

18

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Minimum FW security version numbers (min-SVN).
Byte 2: NIC
Byte 1: PSC FW
Byte 0: PSC bootloader

No

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

19

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

20

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

21

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

22

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

23

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

24

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

25

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

26

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

27

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

28

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

29

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

30

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

31

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

32

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

33

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

34

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

35

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

36

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

37

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

38

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

39

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

40

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

41

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

42

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

43

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

44

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

45

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

46

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

47

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

48

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

49

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

50

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW Configuration

Debug Token Configuration:

Bytes 160-167 = Rachet value
Bytes 158-159 = 8
Bytes 156-157 = 0x00011 (Rachet)
Bytes 124-155 = nonce
Bytes 122-123= 32
Bytes 120-121= 0x0002 (Nonce)
Bytes 112-119 = FW version value
Bytes 110-111 = 8
Bytes 108-109 = 0x0005 (FW version))
Bytes 92-107 = Device PSID value
Bytes 90-91 = 16
Bytes 88-89 = 0x4401 (PSID)
Bytes 80-87 = Keypair UUID value
Bytes 78-79 = 8
Bytes 76-77 = 0x0003 (serial number / device ID)
Bytes 60-75 = Keypair UUID value
Bytes 58-59 = 16
Bytes 56-57 = 0x4400 (Keypair UUID)
Bytes 52-55 = token request status
Bytes 50-51 = 4
Bytes 48-49 = 0x000D (Status)
Bytes 44-47 = device type identifier
Bytes 42-43 = 4
Bytes 40-41 = 0x0001 (Device Type)
Bytes 36-39 = “NBTR”
Bytes 34-35 = 4
Bytes 32-33 = 0x0008 (Token Identifier)
Bytes 12-31 – reserved
Byte 8-11 – structure size (=136)
Byte 4-7 – header version
Byte 0-3 - header identifier

No

DMTFSpecMeasurementValueSize

168

Raw bitstream

51

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

PLDM device identifiers:
The format of data is based on the PLDM QueryDeviceIdentifiers response, but might not be identical to it as this index has a fixed list of descriptors with a fixed ordering.
Byte 0: 0x0 (Completion Code)
Bytes 1-4: Total length of descriptors in bytes starting at byte 6
Byte 5: Total number of descriptors
Bytes 6-N: List of device descriptors
The list of device descriptors includes:

  • PCI Vendor ID

  • PCI Device ID

  • PCI Subsystem Vendor ID

  • PCI Subsystem ID

  • If APSKU present on the device: Vendor defined block with content:

    • APSKU

All multi-byte fields are little endian.

Yes

DMTFSpecMeasurementValueSize


Raw bitstream

Reserved indexes 19–49 (reported as 0xFF) are exclusive to SPDM 1.1 and are no longer reported in SPDM 1.2 and later versions.

Version 1.2.0

Index

Measurement

Value

Description

What is measured?

Part of CoRIM

1

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Interpret as Semver2.0 ((https://semver.org/).
Byte 3: Major Version
Byte 2-1: Minor Version
Byte 0: is patch

Yes

DMTFSpecMeasurementValueSize

4

4-byte unsigned Integer, little endian

2


DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of PSC FW


Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

3

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

4

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM NIC FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

5

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

6

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA NIC FW Configuration

Yes


DMTFSpecMeasurementValueSize

64

SHA2-512 hash

7


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW version number

Yes

DMTFSpecMeasurementValueSize

9

9 bytes, unsigned Integer, little endian

8


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

9

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

10

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

1

1 byte, unsigned Integer, little endian

11

DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of NIC FW

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

12

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of hardware configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

13

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of instance-based hardware configuration

No

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

14

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Debug tokens status:

Device Runtime Status (32-bit)
Bit 0-1: Runtime token (customer support)
Bit 2-3: Debug FW Token
Bit 4-5: FRC token
Bit 6-31: reserved

Each pair consists of:
Bit 0: Runtime Token Applied Since Last Reset (1 bit)
Bit 1: Runtime Token Currently In Use (1 bit)

Yes, reported with all bits clear.

DMTFSpecMeasurementValueSize

4

32-bit, unsigned integer, little endian

15

DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-0; This should be the same as TCG-OID extension in L5 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

16


DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-1; This should be the same as TCG-OID extension in L6 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

17

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

Device identifier (DID, VID, SVID, SID) as defined by PCISIG and a vendor defined byte.
Byte 1:2 - Vendor ID
Byte 3:4 - Device ID
Byte 5:6 - Subsystem Vendor ID
Byte 7:8 - Subsystem ID
Byte 9 - Vendor defined byte

All multi-byte fields are little endian (uint16_t)

Yes (also in CoMID tag-id);


DMTFSpecMeasurementValueSize

9

Raw bitstream

18


DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

19

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

20


DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

21


DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

22

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

23

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

24

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

25

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

26

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

27

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

28

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

29


DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

30

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

31

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

32

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

33


DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

34

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

35

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

36

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

37

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

38

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

39

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

40

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

41

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

42

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

43

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

44

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

45

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

46

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

47

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

48

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

49

DMTFSpecMeasurementValueType

0x81

Raw bitstream, HW Configuration

Reserved. Reported as 0xFF

No

DMTFSpecMeasurementValueSize

1

Raw bitstream

50

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW Configuration

Debug Token Configuration:

Bytes 160-167 = Rachet value
Bytes 158-159 = 8
Bytes 156-157 = 0x00011 (Rachet)
Bytes 124-155 = nonce
Bytes 122-123= 32
Bytes 120-121= 0x0002 (Nonce)
Bytes 112-119 = FW version value
Bytes 110-111 = 8
Bytes 108-109 = 0x0005 (FW version))
Bytes 92-107 = Device PSID value
Bytes 90-91 = 16
Bytes 88-89 = 0x4401 (PSID)
Bytes 80-87 = Keypair UUID value
Bytes 78-79 = 8
Bytes 76-77 = 0x0003 (serial number / device ID)
Bytes 60-75 = Keypair UUID value
Bytes 58-59 = 16
Bytes 56-57 = 0x4400 (Keypair UUID)
Bytes 52-55 = token request status
Bytes 50-51 = 4
Bytes 48-49 = 0x000D (Status)
Bytes 44-47 = device type identifier
Bytes 42-43 = 4
Bytes 40-41 = 0x0001 (Device Type)
Bytes 36-39 = “NBTR”
Bytes 34-35 = 4
Bytes 32-33 = 0x0008 (Token Identifier)
Bytes 12-31 – reserved
Byte 8-11 – structure size (=136)
Byte 4-7 – header version
Byte 0-3 - header identifier

No

DMTFSpecMeasurementValueSize

168

Raw bitstream

51

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

PLDM device identifiers:
The format of data is based on the PLDM QueryDeviceIdentifiers response, but might not be identical to it as this index has a fixed list of descriptors with a fixed ordering.
Byte 0: 0x0 (Completion Code)
Bytes 1-4: Total length of descriptors in bytes starting at byte 6
Byte 5: Total number of descriptors
Bytes 6-N: List of device descriptors
The list of device descriptors includes:

  • PCI Vendor ID

  • PCI Device ID

  • PCI Subsystem Vendor ID

  • PCI Subsystem ID

  • If APSKU present on the device: Vendor defined block with content:

    • APSKU

All multi-byte fields are little endian.

Yes

DMTFSpecMeasurementValueSize


Raw bitstream

Version 1.1.0

Index

Measurement

Value

Description

What is measured?

Part of CoRIM

1


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Interpret as Semver2.0 ((https://semver.org/).
Byte 3: Major Version
Byte 2-1: Minor Version
Byte 0: is patch

Yes

DMTFSpecMeasurementValueSize

4

4-byte unsigned Integer, little endian

2


DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of PSC FW


Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

3

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

4

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM NIC FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

5

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

6

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA NIC FW Configuration

Yes


DMTFSpecMeasurementValueSize

64

SHA2-512 hash

7


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW version number

Yes

DMTFSpecMeasurementValueSize

9

9 bytes, unsigned Integer, little endian

8


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

9

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

10

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

1

1 byte, unsigned Integer, little endian

11

DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of NIC FW

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

12

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of hardware configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

13

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of instance-based hardware configuration

No

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

14

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Reserved

Yes, reported with all bits set.

DMTFSpecMeasurementValueSize

4

32 bit, unsigned integer, little endian

15

DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-0; This should be the same as TCG-OID extension in L5 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

16


DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-1; This should be the same as TCG-OID extension in L6 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

17

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

Device identifier (DID, VID, SVID, SID) as defined by PCISIG and a vendor defined byte.
Byte 1:2 - Vendor ID
Byte 3:4 - Device ID
Byte 5:6 - Subsystem Vendor ID
Byte 7:8 - Subsystem ID
Byte 9 - Vendor defined byte

All multi-byte fields are little endian (uint16_t)

Yes (also in CoMID tag-id);


DMTFSpecMeasurementValueSize

9

Raw bitstream

18

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

PLDM device identifiers
This block will be the last measurement block, for all measurement block versions. The format of data is based on the PLDM QueryDeviceIdentifiers response but might not be identical to it as this index has a fixed list of descriptors with a fixed ordering.
Byte 0: 0x0 (Completion Code)
Bytes 1-4: Total length of descriptors in bytes starting at byte 6
Byte 5: Total number of descriptors
Bytes 6-N: List of device descriptors
The list of device descriptors includes:

  • PCI Vendor ID

  • PCI Device ID

  • PCI Subsystem Vendor ID

  • PCI Subsystem ID

  • If APSKU present on the device: Vendor defined block with content:

    • APSKU

All multi-byte fields are little endian.

Yes

DMTFSpecMeasurementValueSize


Raw bitstream

Version 1.0.0

Index

Measurement

Value

Description

What is measured?

Part of CoRIM

1

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Interpret as Semver2.0 ((https://semver.org/).
Byte 3: Major Version
Byte 2-1: Minor Version
Byte 0: is patch

Yes

DMTFSpecMeasurementValueSize

4

4-byte unsigned Integer, little endian

2


DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of PSC FW


Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

3

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

4

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of OEM NIC FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

5

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA Platform FW Configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

6

DMTFSpecMeasurementValueType

0x03

Hash, FW configuration

Hash of NVIDIA NIC FW Configuration

Yes


DMTFSpecMeasurementValueSize

64

SHA2-512 hash

7


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW version number

Yes

DMTFSpecMeasurementValueSize

9

9 bytes, unsigned Integer, little endian

8


DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

9

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

Platform mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

3

3 bytes, unsigned Integer, little endian

10

DMTFSpecMeasurementValueType

0x83

Raw bitstream, FW configuration

NIC mutable FW security version number

Yes

DMTFSpecMeasurementValueSize

1

1 byte, unsigned Integer, little endian

11

DMTFSpecMeasurementValueType

0x01

Hash, mutable FW

Hash of NIC FW

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

12

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of hardware configuration

Yes

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

13

DMTFSpecMeasurementValueType

0x02

Hash, HW configuration

Hash of instance-based hardware configuration

No

DMTFSpecMeasurementValueSize

64

SHA2-512 hash

14

DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-0; This should be the same as TCG-OID extension in L5 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

15


DMTFSpecMeasurementValueType

0x81

Raw bitstream (mutable FW)

FWID-1; This should be the same as TCG-OID extension in L6 certificate

Yes

DMTFSpecMeasurementValueSize

48

Raw bitstream of SHA-384 hash

16

DMTFSpecMeasurementValueType

0x81

Raw bitstream (Device Identifier)

Device Identifier (DID, VID, SVID, SID) as defined by PCISIG and a vendor defined byte.
Byte 1:2 - Vendor ID
Byte 3:4 - Device ID
Byte 5:6 - Subsystem Vendor ID
Byte 7:8 - Subsystem ID
Byte 9 - Vendor defined byte

All multi-byte fields are little endian (uint16_t)

Yes (also in CoMID tag-id);


DMTFSpecMeasurementValueSize

9

Raw bitstream

Last updated: