IP Library › Granted Patent US 10,545,770
Granted Patent B2
US 10,545,770 · App. 15/582,041 · Granted Jan 28, 2020

Configurable client hardware

Inventors: Yen Hsiang Chew (Bayan Lepas, MY); Eng Choon Tan (Gelugor, MY)
Assignee: Intel Corporation
G06F9/4411G06F1/24G06F9/44505G06F13/4081G06F13/4282H04L9/3247H04L9/3265G06F2213/0026
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,545,770
App. No.
15/582,041
Granted
Jan 28, 2020
Kind
B2
Abstract

Various systems and methods for configuring a pluggable computing device are described herein. A pluggable computing device may be configured to be compatible with a pluggable host system using a default communication channel to obtain configuration settings and configure a programmable logic device on the pluggable computing device. The pluggable computing device may perform chain of trust processing on the pluggable host system. The pluggable computing device may be disposed on a compute card, which may include a heat sink in a particular configuration.

Claims (26)

1. A pluggable computing device for implementing a chain of trust, the pluggable computing device comprising:

a processor subsystem; and

memory including instructions, which when executed by the processor subsystem, cause the processor subsystem to:

initiate a secure boot process at the pluggable computing device;

access, from a pluggable host system: (1) a set of original equipment manufacturer (OEM)-defined platform parameters, (2) an OEM certificate from the OEM that provided the OEM-defined platform parameters, and (3) a signature from the pluggable host system, the pluggable host system being coupled to the pluggable computing device and together forming a pluggable system, the set of OEM-defined platform parameters signed by the OEM certificate and used by the pluggable computing device to reconfigure itself;

verify, at the pluggable computing device, the authenticity of the OEM certificate;

verify, at the pluggable computing device, the OEM-defined platform parameters;

store, at the pluggable computing device, the OEM-defined platform parameters, the OEM certificate, and the signature at the pluggable computing device when the authenticity of the OEM certificate and the OEM-defined platform parameters are verified; and

use, at the pluggable computing device, the OEM-defined platform parameters in a subsequent boot process or chain of trust processing of the pluggable system.

2. The pluggable computing device of claim 1 , wherein initiating the secure boot measure process is in response to a reset event or a power on event.

3. The pluggable computing device of claim 1 , wherein initiating the secure boot measure process is in response to receiving a remote attestation request.

4. The pluggable computing device of claim 1 , wherein to store the OEM defined platform parameters, the processor subsystem is to store the OEM defined platform parameters at a non-volatile memory at the pluggable computing device.

5. The pluggable computing device of claim 1 , wherein to store the OEM certificate and the signature, the processor subsystem is to store the OEM certificate and the signature at the pluggable computing device in a trusted platform management module.

6. The pluggable computing device of claim 1 , wherein to verify the OEM-defined platform parameters, the processor subsystem is to use an OEM public code verification key to verify the OEM-defined platform parameters.

7. The pluggable computing device of claim 1 , wherein the OEM-defined platform parameters include input/output (I/O) types supported by the pluggable host system.

8. The pluggable computing device of claim 1 , wherein the OEM-defined platform parameters include input/output (I/O) pin mappings to use with the pluggable host system.

9. The pluggable computing device of claim 1 , wherein the OEM-defined platform parameters include hardware accelerator functions to use with the pluggable host system.

10. The pluggable computing device of claim 1 , wherein the OEM-defined platform parameters include a pointer to a programmable logic device configuration file for use when reconfiguring the pluggable computing device.

11. A method for implementing a chain of trust for a pluggable computing device, the method performed by the pluggable computing device, the method comprising:

initiating a secure boot process at the pluggable computing device;

accessing, by the pluggable computing device from a pluggable host system: (1) a set of original equipment manufacturer (OEM)-defined platform parameters, (2) OEM certificate from the OEM that provided the OEM-defined platform parameters, and (3) a signature from the pluggable host system, the pluggable host system being coupled to the pluggable computing device and together forming a pluggable system, the set of OEM-defined platform parameters signed by the OEM certificate and used by the pluggable computing device to reconfigure itself;

verifying, at the pluggable computing device, the authenticity of the OEM certificate;

verifying at the pluggable computing device, the OEM-defined platform parameters;

storing, at the pluggable computing device, the OEM-defined platform parameters, the OEM certificate, and the signature at the pluggable computing device when the authenticity of the OEM certificate and the OEM defined platform parameters are verified; and

using, at the pluggable computing device, the OEM-defined platform parameters in a subsequent boot process or chain of trust processing of the pluggable system.

12. The method of claim 11 , wherein initiating the secure boot measure process is in response to a reset event or a power on event.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 21, 2017
From: CHEW, YEN HSIANG; TAN, ENG CHOON
To: INTEL CORPORATION
Reel/Frame 043065/0165 →
Continuity (4)
Provisional Application 62421828 · Nov 14, 2016
Provisional Application 62421856 · Nov 14, 2016
Provisional Application 62421843 · Nov 14, 2016
Related Publication 20180136943A1 · May 17, 2018
Cited By (1)
US 12,423,020