Markdown Version | Recording 1 | Recording 2

Session Date/Time: 04 Nov 2025 14:30

LAMPS Session Minutes

Summary

The LAMPS session covered significant progress on multiple documents, including composite signatures moving to publication, discussions on composite KEMs, and updates to CMC and EST protocols. Key decisions included the adoption of AES-GCM for CMC BIS, deprecation of the Chameleon draft in favor of Certificate Discovery, and the settling of X-wing labels for CKEMs. Several new drafts, including MAC Addresses in X.509, EST Renewal Information, and CMS BCP, are entering or are in the process of working group adoption. Discussions also began on a potential EST BIS document and early adoption of a draft for FNDSA.

Key Discussion Points

Decisions and Action Items

Next Steps


Session Date/Time: 06 Nov 2025 14:30

LAMPS

Summary

The second LAMPS session focused on a proposed Extended Key Usage (EKU) for attestation keys and a new proposal for one-time signature certificates. The discussion around the attestation EKU centered on whether the EKU mechanism is suitable for expressing constraints like "only sign evidence," given the additive nature of EKUs, with alternative suggestions of critical extensions or policy OIDs emerging. For one-time signature certificates, there was broad interest in the use case for archiving and simplified management, but a significant debate arose regarding whether the proposed document binding extension should be critical to truly enforce the "one-time" property. Additionally, an ad-hoc discussion revisited the structure of private keys for composite KEMs, where the authors stated that embedding the public key within the private key is necessary for compatibility with existing Java cryptographic libraries.

Key Discussion Points

Decisions and Action Items

Next Steps