IP Library › Granted Patent US 10,025,576
Granted Patent B2
US 10,025,576 · App. 14/796,864 · Granted Jul 17, 2018

Method for deploying BIOS integrity measurement via BIOS update package and system therefor

Inventors: Ricardo L. Martinez (Leander, TX); Balasingh P. Samuel (Round Rock, TX); Richard M. Tonry (Austin, TX)
Assignee: DELL PRODUCTS, LP
G06F8/61G06F21/575G06F21/60G06F9/4401
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,025,576
App. No.
14/796,864
Granted
Jul 17, 2018
Kind
B2
Abstract

A BIOS delivery installation package includes a basic input/output system (BIOS) update payload including a BIOS image. The BIOS delivery installation package also includes a first hash corresponding to a portion of the BIOS image.

Claims (37)

1. A method for updating basic input/output (BIOS) firmware at an information handling system, the method comprising:

incorporating, by a data processing device, a BIOS update payload at a BIOS delivery installation package, the BIOS update payload including a complete BIOS image to be stored at a firmware memory at the information handling system; and

incorporating a first hash at the BIOS delivery installation package, the first hash generated based on a first portion of a BIOS image included at the BIOS update payload.

2. The method of claim 1 , wherein the first hash is compliant with a Trusted Computing Group Platform Configuration Register Zero (PCR 0 ) measurement.

3. The method of claim 1 , further comprising incorporating a cryptographic signature corresponding to the first hash at the BIOS delivery installation package.

4. The method of claim 1 , further comprising:

receiving the BIOS image; and

generating the first hash, the first portion corresponding to BIOS instructions.

5. The method of claim 1 , further comprising:

providing an executable computer program to parse the installation package and to extract the first hash from the BIOS delivery installation package.

6. The method of claim 1 , further comprising:

identifying information included at a first address range of a BIOS image;

generating a second hash of information stored at the first address range;

incorporating an indicator identifying the first address range at the installation package; and

incorporating the second hash at the BIOS delivery installation package.

7. The method of claim 1 , wherein the BIOS delivery installation package comprises an executable program.

8. The method of claim 1 , wherein the BIOS delivery installation package comprises a Unified Extensible Firmware Interface update capsule.

9. A method for updating basic input/output (BIOS) firmware at an information handling system, the method comprising:

receiving a BIOS delivery installation package, the BIOS delivery installation package including a BIOS update payload and a first hash, the BIOS update payload including a complete BIOS image to be stored at a firmware memory at the information handling system, the first hash generated based on a first portion of the BIOS image; and

parsing, using a data processing device at the information handling system, the BIOS delivery installation package to extract the first hash.

10. The method of claim 9 , wherein the first hash is compliant with a Trusted Computing Group Platform Configuration Register Zero (PCR 0 ) measurement.

11. The method of claim 9 , further comprising validating authenticity of the first hash using a cryptographic signature included at the BIOS delivery installation package.

12. The method of claim 9 , further comprising:

parsing the BIOS delivery installation package to extract an indicator identifying a first address range of the BIOS image; and

parsing the BIOS delivery installation package to extract a second hash generated based on information included at the first address range.

13. The method of claim 9 , wherein the BIOS delivery installation package comprises an executable program.

14. The method of claim 9 , wherein the BIOS delivery installation package comprises a Unified Extensible Firmware Interface update capsule.

15. A computer readable device for storing a basic input/output system (BIOS) delivery installation package to update BIOS firmware at a firmware memory at an information handling system, the package comprising:

an update payload at the BIOS delivery installation package, the update payload including a complete BIOS image to be stored at the firmware memory; and

a first hash generated based on a first portion of the BIOS image included at the update payload, and the first hash is incorporated at the BIOS delivery installation package.

16. The computer readable device of claim 15 , wherein the first hash is compliant with a Trusted Computing Group Platform Configuration Register Zero (PCR 0 ) measurement.

17. The computer readable device of claim 15 , the package further comprising a cryptographic signature corresponding to the first hash at the BIOS delivery installation package.

18. The computer readable device of claim 15 , the package further comprising:

an indicator identifying a first address range of the BIOS image at the BIOS update payload; and

a second hash generated based on information stored at the first address range.

19. The computer readable device of claim 15 , wherein the BIOS delivery installation package comprises an executable program.

20. The computer readable device of claim 15 , wherein the BIOS delivery installation package comprises a Unified Extensible Firmware Interface update capsule.

Assignments (15)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (045455/0001) Recorded May 20, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061753/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040136/0001) Recorded Apr 26, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO ASAP SOFTWARE EXPRESS, INC.); DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC CORPORATION (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MAGINATICS LLC); EMC IP HOLDING COMPANY LLC (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO MOZY, INC.); SCALEIO LLC
Reel/Frame 061324/0001 →
RELEASE OF SECURITY INTEREST Recorded Nov 3, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL, L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; WYSE TECHNOLOGY L.L.C.
Reel/Frame 058216/0001 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040134/0001 →
SECURITY AGREEMENT Recorded Sep 21, 2016
From: ASAP SOFTWARE EXPRESS, INC.; AVENTAIL LLC; CREDANT TECHNOLOGIES, INC.; DELL USA L.P.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL SOFTWARE INC.; DELL SYSTEMS CORPORATION; EMC CORPORATION; EMC IP HOLDING COMPANY LLC; FORCE10 NETWORKS, INC.; MAGINATICS LLC; MOZY, INC.; SCALEIO LLC; SPANNING CLOUD APPS LLC; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 040136/0001 →
RELEASE OF REEL 036502 FRAME 0237 (TL) Recorded Sep 14, 2016
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 040028/0088 →
RELEASE OF REEL 036502 FRAME 0291 (NOTE) Recorded Sep 14, 2016
From: BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 040027/0637 →
RELEASE OF REEL 036502 FRAME 0206 (ABL) Recorded Sep 13, 2016
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: DELL SOFTWARE INC.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.
Reel/Frame 040017/0204 →
SUPPLEMENT TO PATENT SECURITY AGREEMENT (NOTES) Recorded Aug 27, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; WYSE TECHNOLOGY L.L.C.
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 036502/0291 →
SUPPLEMENT TO PATENT SECURITY AGREEMENT (TERM LOAN) Recorded Aug 27, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; WYSE TECHNOLOGY L.L.C.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 036502/0237 →
SUPPLEMENT TO PATENT SECURITY AGREEMENT (ABL) Recorded Aug 27, 2015
From: DELL PRODUCTS L.P.; DELL SOFTWARE INC.; WYSE TECHNOLOGY, L.L.C.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 036502/0206 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 14, 2015
From: MARTINEZ, RICARDO L.; SAMUEL, BALASINGH P.; TONRY, RICHARD M.
To: DELL PRODUCTS, LP
Reel/Frame 036082/0406 →
Continuity (1)
Related Publication 20170010875A1 · Jan 12, 2017
Cited By (2)
US 12,481,506 US 12,639,078