@techreport{england2017device, author = {england, paul and aigner, ronald and kane, kevin and marochko, andrey and mattoon, dennis and spiger, rob and thom, stefan and zaverucha, greg}, title = {Device Identity with DICE and RIoT: Keys and Certificates}, year = {2017}, month = {September}, abstract = {This draft specification describes a cryptographic device identity and attestation scheme based on the TLS protocol and X.509 client certificates.  The protocol and certificate formats can be implemented by any type of security processor, but are well suited to DICE+RIoT security architectures. Devices without hardware-based security can also implement the protocol in software, although the resultant identity and attestations will be of lower assurance.}, url = {http://approjects.co.za/?big=en-us/research/publication/device-identity-dice-riot-keys-certificates/}, number = {MSR-TR-2017-41}, }