IP Library Granted Patent US 7,207,039
Granted Patent B2
US 7,207,039 · App. 10/746,975 · Granted Apr 17, 2007

Secure booting and provisioning

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,207,039
App. No.
10/746,975
Granted
Apr 17, 2007
Kind
B2
Abstract

Provided are techniques for booting and provisioning a platform connected to a boot and provisioning server including a server boot and provisioning system. The server boot and provisioning system receives a platform identifier, selects a platform specific boot image based on the platform identifier in response to determining that the platform identifier is valid, and selects a platform specific configuration profile based on the platform identifier in response to determining that the platform identifier is valid. Also provided are techniques for booting and provisioning a platform connected to a boot and provisioning server, wherein the platform includes a platform boot and provisioning system.

Claims (59)

1. A method for booting and provisioning a platform connected to a boot and provisioning server including a server boot and provisioning system, comprising:

receiving a platform identifier;

selecting a platform specific boot image from a set of platform specific boot images based on the platform identifier in response to determining that the platform identifier is valid;

selecting a platform specific configuration profile based on the platform identifier in response to determining that the platform identifier is valid, wherein the platform specific configuration profile is used to configure one or more storage devices using a prescribed policy; and

selecting a configuration profile by obtaining a class of storage devices attached to the platform and selecting the configuration profile based on the class of the storage devices in response to determining that the platform identifier is not valid, wherein the configuration profile is used to configure one or more storage devices using a prescribed policy.

2. The method of claim 1 , further comprising:

selecting a generic boot image in response to determining that the platform identifier is not valid.

3. The method of claim 1 , further comprising:

signing at least a portion of the boot image or an associated tag with a private key.

4. The method of claim 1 , farther comprising:

signing at least a portion of credentials.

5. The method of claim 1 , receiving a request with option tags.

6. A method for booting and provisioning a platform connected to a boot and provisioning server, wherein the platform includes a platform boot and provisioning system, comprising:

issuing a request with option tags in response to determining that the platform is enabled to interact with a boot and provisioning server;

issuing a download request to obtain a boot image;

executing the boot image in response to determining that a signature of the boot image is valid;

requesting a configuration profile, wherein the configuration profile is used to configure one or more storage devices using a prescribed policy; and

receiving the configuration profile, wherein, when a platform identifier associated with the platform is valid, the configuration profile is selected based on the platform identifier and, when the platform identifier is not valid, the configuration profile is selected by obtaining a class of storage devices attached to the platform and selecting the configuration profile based on the class of the storage devices.

7. The method of claim 6 , farther comprising:

configuring storage devices connected to the platform using the configuration profile.

8. The method of claim 6 , farther comprising:

discovering a local boot image in response to determining that a local operating system is available.

9. A system in communication with data storage, comprising:

a platform including an Input/Output (I/O) processor;

a storage controller managing Input/Output (I/O) access to the data storage;

a boot and provisioning server including a sewer boot and provisioning system connected to the platform, wherein the server boot and provisioning system is capable of receiving a platform identifier, selecting a platform specific boot image from a set of platform specific boot images based on the platform identifier in response to determining that the platform identifier is valid, selecting a platform specific configuration profile based on the platform identifier in response to determining that the platform identifier is valid, wherein the platform specific configuration profile is used to configure one or more storage devices using a prescribed policy, and selecting a configuration profile by obtaining a class of storage devices attached to the platform and selecting the configuration profile based on the class of the storage devices in response to determining that the platform identifier is not valid, wherein the configuration profile is used to configure one or more storage devices using a prescribed policy.

10. The system of claim 9 , wherein the sewer boot and provisioning system is capable of selecting a generic boot image in response to determining that the platform identifier is not valid.

11. The system of claim 9 , wherein the sewer boot and provisioning system is capable of signing at least a portion of the boot image or an associated tag with a private key.

12. The system of claim 9 , wherein the sewer boot and provisioning system is capable of signing at least a portion of credentials.

13. The system of claim 9 , wherein the server boot and provisioning system is capable of receiving a request with option tags.

14. A system coupled to a network and data storage, comprising:

a platform including an Input/Output (I/O) processor;

a storage controller managing Input/Output (I/O) access to the data storage;

a platform boot and provisioning system at the platform, wherein the platform boot and provisioning system is capable of issuing a request with option tags in response to determining that the platform is enabled to interact with a boot and provisioning server, issuing a download request to obtain a boot image, executing the boot image in response to determining that a signature of the boot image is valid, requesting a configuration profile, and receiving the configuration profile, wherein, when a platform identifier associated with the platform is valid, the configuration profile is selected based on the platform identifier and, when the platform identifier is not valid, the configuration profile is selected by obtaining a class of storage devices attached to the platform and selecting the configuration profile based on the class of the storage devices, and, wherein the configuration profile is used to configure one or more storage devices using a prescribed policy.

15. The system of claim 14 , wherein the platform boot and provisioning system is capable of configuring storage devices connected to the platform using the configuration profile.

16. The system of claim 14 , wherein the platform boot and provisioning system is capable of discovering a local boot image in response to determining that a local operating system is available.

17. An article of manufacture comprising a storage medium having stored therein instructions that when executed by a computing device results in the following:

receiving a platform identifier;

selecting a platform specific boot image from a set of platform specific boot images based on the platform identifier in response to determining that the platform identifier is valid; and

selecting a platform specific configuration profile based on the platform identifier in response to determining that the platform identifier is valid, wherein the platform specific configuration profile is used to configure one or more storage devices using a prescribed policy; and

selecting a configuration profile by obtaining a class of storage devices attached to the platform and selecting the configuration profile based on the class of the storage devices in response to determining that the platform identifier is not valid, wherein the configuration profile is used to configure one or more storage devices using a prescribed policy.

18. The article of manufacture of claim 17 , wherein the instructions when executed further result in the following:

selecting a generic boot image in response to determining that the platform identifier is not valid.

19. The article of manufacture of claim 17 , wherein the instructions when executed further result in the following:

signing at least a portion of the boot image or an associated tag with a private key.

20. The article of manufacture of claim 17 , wherein the instructions when executed farther result in the following:

signing at least a portion of credentials.

21. The article of manufacture of claim 17 , wherein the instructions when executed farther result in the following:

receiving a request with option tags.

22. An article of manufacture comprising a storage medium having stored therein instructions that when executed by a computing device results in the following:

issuing a request with option tags in response to determining that the platform is enabled to interact with a boot and provisioning server;

issuing a download request to obtain a boot image;

executing the boot image in response to determining that a signature of the boot image is valid;

requesting a configuration profile, wherein the configuration profile is used to configure one or more storage devices using a prescribed policy; and

receiving the configuration profile, wherein, when a platform identifier associated with the platform is valid, the configuration profile is selected based on the platform identifier and, when the platform identifier is not valid, the configuration profile is selected by obtaining a class of storage devices attached to the platform and selecting the configuration profile based on the class of the storage devices.

23. The article of manufacture of claim 22 , wherein the instructions when executed further result in the following:

configuring storage devices connected to the platform using the configuration profile.

24. The article of manufacture of claim 22 , wherein the instructions when executed further result in the following:

discovering a local boot image in response to determining that a local operating system is available.

Assignments (9)
RELEASE OF SECURITY INTEREST Recorded Nov 12, 2019
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MICRON TECHNOLOGY, INC.; MICRON SEMICONDUCTOR PRODUCTS, INC.
Reel/Frame 051028/0001 →
RELEASE OF SECURITY INTEREST Recorded Oct 9, 2019
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MICRON TECHNOLOGY, INC.
Reel/Frame 050937/0001 →
RELEASE OF SECURITY INTEREST Recorded Aug 23, 2018
From: U.S. BANK NATIONAL ASSOCIATION, AS COLLATERAL AGENT
To: MICRON TECHNOLOGY, INC.
Reel/Frame 047243/0001 →
SECURITY INTEREST Recorded Jul 13, 2018
From: MICRON TECHNOLOGY, INC.; MICRON SEMICONDUCTOR PRODUCTS, INC.
To: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
Reel/Frame 047540/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REPLACE ERRONEOUSLY FILED PATENT #7358718 WITH THE CORRECT PATENT #7358178 PREVIOUSLY RECORDED ON REEL 038669 FRAME 0001. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Jun 8, 2017
From: MICRON TECHNOLOGY, INC.
To: U.S. BANK NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 043079/0001 →
PATENT SECURITY AGREEMENT Recorded Jun 2, 2016
From: MICRON TECHNOLOGY, INC.
To: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
Reel/Frame 038954/0001 →
SECURITY INTEREST Recorded May 12, 2016
From: MICRON TECHNOLOGY, INC.
To: U.S. BANK NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 038669/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 4, 2013
From: INTEL CORPORATION
To: MICRON TECHNOLOGY, INC.
Reel/Frame 030747/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 14, 2004
From: KOMARLA, ESHWARI P.; ZIMMER, VINCENT J.
To: INTEL CORPORATION
Reel/Frame 014728/0516 →