Rendered from docs/profiles/vstd-3/references.md at build time without changing its status. The repository source controls if this presentation differs.
Verifier Standard (VSTD)-3 official public references#
Acronyms: Advanced Micro Devices (AMD); application programming interface (API); Amazon Web Services (AWS); command-line interface (CLI); Device Identifier Composition Engine (DICE); DMTF standards organization (DMTF); design of experiments (DOE); Engineering Change Notice (ECN); graphics processing unit (GPU); integrated development environment (IDE); Internet Engineering Task Force (IETF); multi-instance GPU (MIG); NVIDIA Management Library (NVML); Peripheral Component Interconnect (PCI); PCI Special Interest Group (PCI-SIG); Remote Attestation Procedures (RATS); Request for Comments (RFC); Reference Integrity Manifest (RIM); software development kit (SDK); system management interface (SMI); Security Protocol and Data Model (SPDM); Trusted Device Interface Security Protocol (TDISP).
Reader aid: cross-profile concept glossary and primary precedents.
Retrieved: 2026-08-21
These sources inform adapter boundaries and interoperability vocabulary. They are not copied into VSTD, and their presence does not show that a product implements the VSTD Firmware Accountability Contract.
Cross-vendor attestation and device security#
- DMTF SPDM standards page — authentication, attestation, measurements, and key exchange; the page listed DSP0274 1.4.0 when retrieved.
- IETF RFC 9334: RATS Architecture — roles and trust model for attestation evidence and appraisal.
- IETF RFC 9711: Entity Attestation Token — interoperable attestation claims, nonce/freshness, and composite-device concepts.
- CHIPS Alliance Caliptra — open root of trust, measured boot, identity, and attestation project for datacenter SoCs.
- PCI-SIG PCI Express Base resources — public listings for Component Measurement and Authentication, IDE, DOE, and TDISP.
- PCI-SIG IDE public ECN page — public description of confidentiality, integrity, and replay protection for PCIe transaction traffic.
NVIDIA#
- NVIDIA Attestation SDK evidence collection — public GPU/NVSwitch evidence collection and SPDM/certificate evidence path.
- NVIDIA GPU claims guide — public descriptions of nonce, certificate, measurement/RIM, and GPU identity claims.
- NVIDIA Attestation Core Library — verifier library boundary.
- NVIDIA MIG guide and NVML MIG APIs — host-visible partition and logical identity discovery.
AMD#
- AMD SMI CLI documentation — host-visible inventory, firmware, and telemetry collection.
- AMD SMI partition documentation — accelerator partition concepts.
- AMD SMI Python API — programmatic collector surface.
AMD SMI metadata is not treated as DICE or firmware attestation by the reference adapter. A public, accessible evidence format plus verifier/root policy is still needed before that claim can be implemented.
Cloud accelerator product context#
These links establish product/deployment vocabulary only. They do not establish a tenant-accessible firmware attestation API or complete mediation.