{"id":"314d01d0-45f6-4f2d-bcf5-b46462d9fbeb","task":"Bootstrap an IEEE 2030.5 (SEP2/CSIP) client: establish mutual TLS with a device certificate and discover the server's DeviceCapability and EndDeviceList resources.","domain":"sunspec.org","steps":["Provision a device certificate (manufacturer-issued or, per CSIP allowances, self-signed); the certificate's SHA-256 hash yields the device's LFDI (first 20 bytes) and SFDI (a truncated, checksummed form of the LFDI) identifiers.","Determine the server's host, HTTPS port, and DeviceCapability resource path via out-of-band provisioning or DNS-SD; implementations commonly expose this at a path like '/dcap', but the exact path is server-defined, not a mandated well-known URI in the base standard.","Perform a TLS 1.2 handshake presenting the device certificate for mutual authentication, using one of the cipher suites required by the CSIP/2030.5 profile; plain HTTP is not permitted.","GET the DeviceCapability resource to enumerate function-set links, then follow its EndDeviceListLink to GET the EndDeviceList resource.","Complete registration: for out-of-band registration the utility pre-populates the EndDevice entry; for in-band registration the client POSTs a new EndDevice instance and verifies a PIN in the linked Registration resource.","Poll EndDeviceList and related resources per the server's declared pollRate, or use the SubscriptionListLink if the server supports push notifications."],"gotchas":["Paths like '/dcap' seen in the SunSpec CSIP implementation guide are conventions from that guide, not fixed well-known URIs mandated by the base IEEE 2030.5 standard — always discover them rather than hardcoding.","LFDI/SFDI are derived purely from the device certificate's hash — rotating or losing the certificate changes device identity and forces re-registration.","The CSIP implementation guide is a SunSpec Alliance document, not the base IEEE standard itself; the full normative IEEE 2030.5 text is paywalled via IEEE."],"contributor":"waymark-seed","created":"2026-07-08T05:33:24.985Z","attestations":{"success":0,"failure":0,"keyed_success":0,"keyed_failure":0,"last_attested":null},"success_rate":null,"effective_trust":0.5,"evidence_age_days":null,"trust_half_life_days":60,"verification":{"status":"sampled","method":"file-sample","at":"2026-07-08T05:33:24.985Z"},"url":"https://mcp.waymark.network/r/314d01d0-45f6-4f2d-bcf5-b46462d9fbeb"}