Intel® Business Client Software Development
Support for Intel® vPro™ software development and technologies associated with Intel vPro platforms.
Announcements
FPGA community forums and blogs on community.intel.com are migrating to the new Altera Community and are read-only. For urgent support needs during this transition, please visit the FPGA Design Resources page or contact an Altera Authorized Distributor.

TLS on AMT

adrianfreemantle
Beginner
928 Views

Hi,

Does any one have some detailed information (or a document) describing TLS with regards to AMT?

What exactly is the diffreance between Server and Mutual authentication?

Thank you.

0 Kudos
2 Replies
adrianfreemantle
Beginner
928 Views

Hi All,

I will be answering my own question here. I eventually found a very interesting document by CISCO, even though the document is about deploying wireless LAN's, it has a very good and easy to understand description of TLS and mutual vs server authentication. If any one else wants a easy to understand desription of TLS have a look at:

www.cisco.com/warp/public/cc/pd/sqsw/sq/tech/acstl_wp.pdf

0 Kudos
Ylian_S_Intel
Employee
928 Views

I am glad you found this document. Yes, basicaly, if you use server-auth: Only Intel AMT has a certficate and the console or browser must be able to trust that certificate.

In mutual-auth, both Intel AMT console and Intel AMT must have certificates and both must verify and trust each other's certificates.

As a side note, the Intel AMT DTK does not currenlty support mutual-auth, but this will be added next week since there seems to be more demand for it now.

Ylian (Intel AMT Blog)

0 Kudos
Reply