Parent: #7
The current attestation verification checks measurements against known-good values and validates signature binding, but does not verify the full certificate chain (TPM endorsement key chain, AMD ARK→ASK→VCEK, Intel DCAP).
Files: src/verification/attestation.rs line 402
Requires: Platform-specific CA certificates or a verification service
Parent: #7
The current attestation verification checks measurements against known-good values and validates signature binding, but does not verify the full certificate chain (TPM endorsement key chain, AMD ARK→ASK→VCEK, Intel DCAP).
Files:
src/verification/attestation.rsline 402Requires: Platform-specific CA certificates or a verification service