Intel® Business Client Software Development
Support for Intel® vPro™ software development and technologies associated with Intel vPro platforms.
Announcements
The Intel sign-in experience has changed to support enhanced security controls. If you sign in, click here for more information.

TLS on AMT

adrianfreemantle
Beginner
252 Views

Hi,

Does any one have some detailed information (or a document) describing TLS with regards to AMT?

What exactly is the diffreance between Server and Mutual authentication?

Thank you.

0 Kudos
2 Replies
adrianfreemantle
Beginner
252 Views

Hi All,

I will be answering my own question here. I eventually found a very interesting document by CISCO, even though the document is about deploying wireless LAN's, it has a very good and easy to understand description of TLS and mutual vs server authentication. If any one else wants a easy to understand desription of TLS have a look at:

www.cisco.com/warp/public/cc/pd/sqsw/sq/tech/acstl_wp.pdf

Ylian_S_Intel
Employee
252 Views

I am glad you found this document. Yes, basicaly, if you use server-auth: Only Intel AMT has a certficate and the console or browser must be able to trust that certificate.

In mutual-auth, both Intel AMT console and Intel AMT must have certificates and both must verify and trust each other's certificates.

As a side note, the Intel AMT DTK does not currenlty support mutual-auth, but this will be added next week since there seems to be more demand for it now.

Ylian (Intel AMT Blog)

Reply