IP Library Granted Patent US 8,695,107
Granted Patent B2
US 8,695,107 · App. 13/007,766 · Granted Apr 8, 2014

Information processing device, a hardware setting method for an information processing device and a computer readable storage medium stored its program

Inventor: Kensuke Ishida (Kawasaki, JP)
Assignee: Fujitsu Limited
G06F21/86G06F11/2028G06F11/2038G06F11/2043
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,695,107
App. No.
13/007,766
Granted
Apr 8, 2014
Kind
B2
Abstract

An information processing device includes a replacement function of a system unit in a partition and a TPM (trusted platform module) function in the system unit. The system unit sets the TPM to valid or invalid and a management unit sets a reserved system board in the partition. The TPM setting information of the system unit and the reserved setting information of the system unit by the management unit are notified each other and are exclusive controlled. It is effectively possible to execute a reserved SB function, which integrates the reserved system board and re-starts without manual operation even though using a system unit which mounts the trusted platform module.

Claims (45)

1. An information processing device comprises:

a plurality of processing devices, each of the plurality of processing devices comprising:

a hardware resource that includes an arithmetic processing unit and a memory;

a security unit that performs encrypting processing of data in the hardware resource for securing a security of the hardware resource; and

a system control device that sets at least two processing devices among the plurality of processing device to same partition and reserves the other processing device so as to operate instead of the one processing device of the plurality of processing devices that has occurred a failure in the same partition,

wherein each of the plurality processing devices further comprises an exclusive control unit that exclusively controls a setting for make the security unit to be valid according to a notification of reservation information whether the other processing device was reserved from the system control device, and

wherein the one processing device notifies an information that set the security unit as the valid to the system control device when setting that the security unit is valid before a reservation of the other processing unit and,

the system control device inhibits to set the reservation of the other processing device.

2. The information processing device according to claim 1 , wherein the system control device notifies the reserve information indicating that the other processing device is reserved to the one processing device, and

the exclusive control unit of the one processing device inhibits the setting to make the security unit to be valid by referring the reserve information according to a starting a firmware program of the one processing device.

3. The information processing device according to claim 2 , wherein the one processing device inhibits to set that the security unit is valid when the reserve information indicates that the other processing device is reserved and permits to set that the security unit is valid when the reserve information indicates that the other processing device is not reserved according to a start of the firmware program.

4. The information processing device according to claim 1 , wherein the system control device notifies the reserve information of the other processing device to the one processing device via a signal line.

5. The information processing device according to claim 1 , wherein the system control device notifies the reserve information of the other processing device to the one processing device via a notification path that notifies setting information of the hardware resource.

6. The information processing device according to claim 1 , wherein the processing device further comprises a second memory that stores whether the processing device includes the security unit,

and the system control device refers the second memory and confirms whether the processing device includes the security unit.

7. The information processing device according to claim 1 , wherein the processing device confirms whether the processing device includes the security unit according to a start of the firmware program.

8. The information processing device according to claim 3 , wherein the firmware program starts to issue a reset signal setting the security unit to the valid to the security unit when setting that the security unit is valid.

9. A hardware setting method of an information processing device comprising a plurality of processing devices, each of the plurality of processing devices comprising a hardware resource that includes an arithmetic processing unit and a memory, and a security unit that performs encrypting processing of data in the hardware resource for securing a security of the hardware resource, said method comprising:

setting same partition to at least two the processing device among the plurality of processing device by a system control device which is connected to the plurality of processing devices;

reserving the other processing device so as to operate instead of one processing device of the plurality of processing devices that has occurred a failure in the same partition by the system control device;

exclusively controlling a setting for making the security unit valid according to a notification of reservation information whether the other processing device was reserved from the system control device to the one processing unit by the one processing unit;

notifying an information that set the security unit as the valid to the system control device when the one processing device set that the security unit is valid before a reservation of the other processing unit; and

inhibiting to set the reservation of the other processing device by the system control device.

10. The hardware setting method of the information processing device according to claim 9 , the exclusively controlling further comprising:

notifying the reserve information indicating that the other processing device is reserved from the system control device to the one processing device; and

inhibiting the setting to make the security unit to be valid by referring the reserve information according to a starting a firmware program of the one processing device by an exclusive control unit of the one processing device.

11. The hardware setting method of the information processing device according to claim 10 , wherein the exclusively controlling comprising:

inhibiting a set that the security unit is valid when the reserve information indicates that the other processing device is reserved according to a start of the firmware program; and

permitting to set that the security unit is valid when the reserve information indicates that the other processing device is not reserved according to the start of the firmware program.

12. The hardware setting method of the information processing device according to claim 9 , wherein the exclusively controlling comprising notifying the reserve information of the other processing device to the one processing device via a signal line by the system control device.

13. The hardware setting method of the information processing device according to claim 9 , wherein the exclusively controlling comprising notifying the reserve information of the other processing device to the one processing device via a notification path that notifies setting information by the system control device.

14. The hardware setting method of the information processing device according to claim 9 , wherein said method further comprising:

reading a second memory, that stores whether the processing device includes the security unit, by the system control device; and

confirming whether the processing device includes the security unit or not by the system control device.

15. The hardware setting method of the information processing device according to claim 9 , wherein said method further comprising confirming whether the processing device includes the security unit according to a start of the firmware program by the processing device.

16. The hardware setting method of the information processing device according to claim 11 , wherein said method further comprising starting to issue a reset signal setting the security unit to the valid to the security unit when setting that the security unit is valid by the firmware program.

17. A non-transitory computer readable recording medium stored therein a program for causing a computer to execute a hardware setting process of a plurality of processing devices comprising a hardware resource that includes an arithmetic processing unit and a memory, and a security unit that performs encrypting processing of data in the hardware resource for securing a security of the hardware resource,

setting same partition to at least two the processing device among the plurality of processing device by a system control device which is connected to the plurality of processing devices;

reserving the other processing unit so as to operate instead of one processing device of the plurality of processing devices that has occurred a failure in the same partition by the system control device;

exclusively controlling a setting for making the security unit valid according to a notification of reservation information whether the other processing device was reserved from the system control device to the one processing unit by the one processing unit;

notifying an information that set the security unit as the valid to the system control device when the one processing device set that the security unit is valid before a reservation of the other processing unit; and

inhibiting to set the reservation of the other processing device by the system control device.

18. The non-transitory computer readable recording medium stored the program according to claim 17 , the program causes to further execute,

notifying the reserve information indicating that the other processing device is reserved from the system control device to the one processing device; and

inhibiting the setting to make the security unit to be valid by referring the reserve information according to a starting a firmware program of the one processing device by an exclusive control unit of the one processing device.

Assignments (3)
CORRECTIVE ASSIGNMENT TO CORRECT THE ORIGINAL COVER SHEET BY REMOVING PATENT NUMBER 10586039 PREVIOUSLY RECORDED ON REEL 69272 FRAME 546. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Apr 1, 2025
From: FUJITSU LIMITED
To: FSAS TECHNOLOGIES INC.
Reel/Frame 070764/0091 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 25, 2024
From: FUJITSU LIMITED
To: FSAS TECHNOLOGIES INC.
Reel/Frame 069272/0546 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 1, 2011
From: ISHIDA, KENSUKE
To: FUJITSU LIMITED
Reel/Frame 025727/0090 →
Priority Claims (1)
JP 2010-009596 · Jan 20, 2010 · national
Continuity (1)
Related Publication 20110179493A1 · Jul 21, 2011