PINT is a set of formats and protocols for attesting and securing platform software in datacenter environments. This includes:
- Peripheral (GPU, NIC, etc.) firmware
- Main board firmware (BIOS)
- Operating system components (bootloader, kernel, system services)
This is not an officially supported Google product.
PINT currently defines the following primitives for securing system software:
Project Name | Description |
---|---|
Firmware Measurement Descriptor | A binary header which describes how an Root of Trust should measure a firmware image |
Redfish | Draft proposals for the Redfish specification in DMTF |
Open Mailbox Communications | An exploration for point-to-point communications using open protocols |
SPDM-Lite | A light-weight implementation of SPDM 1.2 secure sessions |