IP Library Granted Patent US 10,146,952
Granted Patent B2
US 10,146,952 · App. 15/226,280 · Granted Dec 4, 2018

Systems and methods for dynamic root of trust measurement in management controller domain

Inventors: Johan Rahardjo (Austin, TX); Michael J. Stumpf (Cedar Park, TX); Timothy M. Lambert (Austin, TX)
Assignee: Dell Products L.P.
G06F21/6218H04L63/08H04L63/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,146,952
App. No.
15/226,280
Granted
Dec 4, 2018
Kind
B2
Abstract

A method may include, by a program of instructions embodied in a read-only memory of a management controller communicatively coupled to a host system processor of an information handling system and configured to provide management of the information handling system via management traffic communicated between the management controller and a dedicated management network external to the information handling system, performing authenticity checks for each of a plurality of sequentially loaded software components of the management controller and controlling execution of the plurality of software components and access by the software components to one or more information handling resources of the information handling system based on the authenticity checks and a configurable policy associated with the management controller, wherein such control of execution and access permits execution of and access by those software components passing the authenticity checks in the event of failure by at least one of the software components.

Claims (25)

1. An information handling system comprising:

a host system comprising a host system processor; and

a management controller communicatively coupled to the host system processor and configured to provide management of the information handling system via management traffic communicated between the management controller and a dedicated management network external to the information handling system, the management controller comprising a processor having a read-only memory embodying a program of instructions configured to, when executed by the processor:

perform authenticity checks for each of a plurality of sequentially loaded software components of the management controller; and

control execution of the plurality of software components and access by the plurality of software components to one or more information handling resources of the information handling system based on the authenticity checks and a configurable policy associated with the management controller, the one or more information handling resources including a credential vault of the management controller, wherein such control of execution and access includes: in response to a first software component failing the authenticity checks and a second software component passing the authenticity checks, executing the first software component such that the first software component does not have access to the credential vault, and allowing access to the credential vault for a selected period of time by the second software component.

2. The information handling system of claim 1 , wherein the plurality of software components comprises a boot block, a bootloader, and an operating system.

3. The information handling system of claim 1 , wherein the one or more information handling resources of the information handling system comprise a peripheral device of the information handling system.

4. The information handling system of claim 3 , further wherein controlling execution of the plurality of software components and access to the peripheral device comprises restricting access to the credential vault by those software components failing the authenticity checks but allowing access to the credential vault by those software components passing the authenticity checks.

5. The information handling system of claim 1 , wherein the management controller comprises a baseboard management controller.

6. A method comprising, by a program of instructions embodied in a read-only memory of a management controller communicatively coupled to a host system processor of an information handling system and configured to provide management of the information handling system via management traffic communicated between the management controller and a dedicated management network external to the information handling system:

performing authenticity checks for each of a plurality of sequentially loaded software components of the management controller; and

controlling execution of the plurality of software components and access by the plurality of software components to one or more information handling resources of the information handling system based on the authenticity checks and a configurable policy associated with the management controller, the one or more information handling resources including a credential vault of the management controller, wherein such control of execution and access includes: in response to a first software component failing the authenticity checks and a second software component passing the authenticity checks, executing the first software component such that the first software component does not have access to the credential vault, and allowing access to the credential vault for a selected period of time by the second software component.

7. The method of claim 6 , wherein the plurality of software components comprises a boot block, a bootloader, and an operating system.

8. The method of claim 6 , wherein the one or more information handling resources of the information handling system comprise a peripheral device of the information handling system.

9. The method of claim 8 , further wherein controlling execution of the plurality of software components and access to the peripheral device comprises restricting access to the credential vault by those software components failing the authenticity checks but allowing access to the credential vault by those software components passing the authenticity checks.

10. The method of claim 6 , wherein the management controller comprises a baseboard management controller.

11. An article of manufacture comprising:

a non-transitory read-only computer-readable medium; and

computer-executable instructions carried on the computer-readable medium, the instructions readable by a processor, the computer-readable medium integral to the processor, and the instructions, when read and executed, for causing the processor to:

perform authenticity checks for each of a plurality of sequentially loaded software components of a management controller communicatively coupled to a host system processor of an information handling system and configured to provide management of the information handling system via management traffic communicated between the management controller and a dedicated management network external to the information handling system; and

control execution of the plurality of software components and access by the plurality of software components to one or more information handling resources of the information handling system based on the authenticity checks and a configurable policy associated with the management controller, the one or more information handling resources including a peripheral device of the management controller, wherein such control of execution and access includes: in response to a first software component failing the authenticity checks and a second software component passing the authenticity checks, executing the first software component such that the first software component does not have access to the peripheral device, and allowing access to the peripheral device for a selected period of time by the second software component.

12. The article of claim 11 , wherein the plurality of software components comprises a boot block, a bootloader, and an operating system.

13. The article of claim 11 , wherein the one or more information handling resources of the information handling system comprise a credential vault of the management controller.

14. The article of claim 13 , further wherein controlling execution of the plurality of software components and access to the credential vault comprises restricting access to the credential vault by those software components failing the authenticity checks but allowing access to the credential vault by those software components passing the authenticity checks.

15. The article of claim 11 , wherein the management controller comprises a baseboard management controller.

Assignments (8)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (040679/0386) Recorded Apr 26, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO WYSE TECHNOLOGY L.L.C.)
Reel/Frame 059803/0666 →
RELEASE OF SECURITY INTEREST AT REEL 040633 FRAME 0799 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL INTERNATIONAL, L.L.C.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.; EMC CORPORATION
Reel/Frame 058297/0427 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
SECURITY AGREEMENT Recorded Mar 21, 2019
From: CREDANT TECHNOLOGIES, INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 049452/0223 →
PATENT SECURITY AGREEMENT (NOTES) Recorded Nov 23, 2016
From: DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.; EMC CORPORATION
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 040679/0386 →
SECURITY INTEREST Recorded Nov 16, 2016
From: DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; WYSE TECHNOLOGY L.L.C.; EMC CORPORATION
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 040633/0799 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 2, 2016
From: RAHARDJO, JOHAN; STUMPF, MICHAEL J.; LAMBERT, TIMOTHY M.
To: DELL PRODUCTS L.P.
Reel/Frame 039317/0200 →
Continuity (1)
Related Publication 20180041543A1 · Feb 8, 2018