IP Library Granted Patent US 11,295,019
Granted Patent B2
US 11,295,019 · App. 16/795,926 · Granted Apr 5, 2022

Systems and methods for disaggregated updates to secondary operating system using network-retrieved secure file system layout

Inventors: Ibrahim Sayyed (Georgetown, TX); Sumanth Vidyadhara (Bangalore, IN)
Assignee: Dell Products L.P.
G06F21/575G06F8/65G06F9/4406G06F9/4416G06F16/182G06F21/572G06F2221/034
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,295,019
App. No.
16/795,926
Granted
Apr 5, 2022
Kind
B2
Abstract

A basic input/output system may be configured to, during a boot of the information handling system and responsive to a condition for launching the secondary operating system: initialize a network driver for communicating with a network via a network interface, download from a secure, verified network location within the network a security manifest file for a most recent version of the secondary operating system, the security manifest file comprising metadata regarding a file system layout for the most recent version of the secondary operating system, based on the file system layout of the security manifest file and an actual file system layout of the secondary operating system as stored within an information handling system, determine one or more portions of the secondary operating system requiring update, and download the one or more portions of the secondary operating system and apply the one or more portions to the secondary operating system as stored within the information handling system.

Claims (36)

1. An information handling system comprising:

a processor;

non-transitory computer readable media communicatively coupled to the processor and having stored thereon a primary operating system of the information handling system and a secondary operating system of the information handling system;

a network interface communicatively coupled to the processor and configured to couple the information handling system to a network; and

a basic input/output system communicatively coupled to the processor and configured to, during a boot of the information handling system and responsive to a condition for launching the secondary operating system:

initialize a network driver for communicating with the network via the network interface;

download from a secure, verified network location within the network a security manifest file for a most recent version of the secondary operating system, the security manifest file comprising metadata regarding a file system layout for the most recent version of the secondary operating system;

based on the file system layout of the security manifest file and an actual file system layout of the secondary operating system as stored within the information handling system, determine one or more portions of the secondary operating system requiring update; and

download the one or more portions of the secondary operating system and apply the one or more portions to the secondary operating system as stored within the information handling system.

2. The information handling system of claim 1 , wherein the basic input/output system is further configured to cause the information handling system to boot to the secondary operating system as updated.

3. The information handling system of claim 1 , wherein the basic input/output system is configured to determine the one or more portions of the secondary operating system requiring update by:

comparing the file system layout of the security manifest file and the actual file system layout of the secondary operating system as stored within the information handling system; and

identifying the differences between the file system layout of the security manifest file and the actual file system layout of the secondary operating system as stored within the information handling system.

4. The information handling system of claim 1 , wherein the basic input/output system is further configured to cause the information handling system to boot to the secondary operating system without any update to the secondary operating system if the file system layout of the security manifest file matches the actual file system layout of the secondary operating system as stored within the information handling system.

5. A method, in an information handling system comprising a non-transitory computer readable media communicatively coupled to the processor and having stored thereon a primary operating system of the information handling system and a secondary operating system of the information handling system and a network interface communicatively coupled to the processor and configured to couple the information handling system to a network, the method comprising, during a boot of the information handling system and responsive to a condition for launching the secondary operating system:

initializing, with a basic input/output system of the information handling system, a network driver for communicating with the network via the network interface;

downloading, with the basic input/output system, from a secure, verified network location within the network a security manifest file for a most recent version of the secondary operating system, the security manifest file comprising metadata regarding a file system layout for the most recent version of the secondary operating system;

based on the file system layout of the security manifest file and an actual file system layout of the secondary operating system as stored within the information handling system, determining, with the basic input/output system, one or more portions of the secondary operating system requiring update; and

downloading, with the basic input/output system, the one or more portions of the secondary operating system and apply the one or more portions to the secondary operating system as stored within the information handling system.

6. The method of claim 5 , further comprising causing, with the basic input/output system, the information handling system to boot to the secondary operating system as updated.

7. The method of claim 5 , wherein determining the one or more portions of the secondary operating system requiring update comprises:

comparing the file system layout of the security manifest file and the actual file system layout of the secondary operating system as stored within the information handling system; and

identifying the differences between the file system layout of the security manifest file and the actual file system layout of the secondary operating system as stored within the information handling system.

8. The method of claim 5 , further comprising causing, with the basic input/output system, the information handling system to boot to the secondary operating system without any update to the secondary operating system if the file system layout of the security manifest file matches the actual file system layout of the secondary operating system as stored within the information handling system.

9. An article of manufacture comprising:

a non-transitory computer readable medium; and

computer-executable instructions carried on the computer readable medium, the instructions readable by a processor, the instructions, when read and executed, for causing the processor to, in an information handling system comprising a non-transitory computer readable media communicatively coupled to the processor and having stored thereon a primary operating system of the information handling system and a secondary operating system of the information handling system and a network interface communicatively coupled to the processor and configured to couple the information handling system to a network, during a boot of the information handling system and responsive to a condition for launching the secondary operating system:

initialize, with a basic input/output system of the information handling system, a network driver for communicating with the network via the network interface;

download, with the basic input/output system, from a secure, verified network location within the network a security manifest file for a most recent version of the secondary operating system, the security manifest file comprising metadata regarding a file system layout for the most recent version of the secondary operating system;

based on the file system layout of the security manifest file and an actual file system layout of the secondary operating system as stored within the information handling system, determine, with the basic input/output system, one or more portions of the secondary operating system requiring update; and

download, with the basic input/output system, the one or more portions of the secondary operating system and apply the one or more portions to the secondary operating system as stored within the information handling system.

10. The article of claim 9 , the instructions for further causing the processor to, with the basic input/output system, cause the information handling system to boot to the secondary operating system as updated.

11. The article of claim 9 , wherein determining the one or more portions of the secondary operating system requiring update comprises:

comparing the file system layout of the security manifest file and the actual file system layout of the secondary operating system as stored within the information handling system; and

identifying the differences between the file system layout of the security manifest file and the actual file system layout of the secondary operating system as stored within the information handling system.

12. The article of claim 9 , the instructions for further causing the processor to, with the basic input/output system, cause the information handling system to boot to the secondary operating system without any update to the secondary operating system if the file system layout of the security manifest file matches the actual file system layout of the secondary operating system as stored within the information handling system.

Assignments (13)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053311/0169) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
Reel/Frame 060438/0742 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052851/0081) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0441 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052851/0917) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0509 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (052852/0022) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 060436/0582 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (053546/0001) Recorded Jun 23, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL MARKETING L.P. (ON BEHALF OF ITSELF AND AS SUCCESSOR-IN-INTEREST TO CREDANT TECHNOLOGIES, INC.); DELL INTERNATIONAL L.L.C.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; DELL MARKETING CORPORATION (SUCCESSOR-IN-INTEREST TO FORCE10 NETWORKS, INC. AND WYSE TECHNOLOGY L.L.C.); EMC IP HOLDING COMPANY LLC
Reel/Frame 071642/0001 →
RELEASE OF SECURITY INTEREST AT REEL 052771 FRAME 0906 Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058001/0298 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052852/0022 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC CORPORATION; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 053311/0169 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC; THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052851/0081 →
SECURITY INTEREST Recorded Jun 5, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS COLLATERAL AGENT
Reel/Frame 052851/0917 →
SECURITY AGREEMENT Recorded May 28, 2020
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 052771/0906 →
SECURITY AGREEMENT Recorded Apr 22, 2020
From: CREDANT TECHNOLOGIES INC.; DELL INTERNATIONAL L.L.C.; DELL MARKETING L.P.; DELL PRODUCTS L.P.; DELL USA L.P.; EMC CORPORATION; FORCE10 NETWORKS, INC.; WYSE TECHNOLOGY L.L.C.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A.
Reel/Frame 053546/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Feb 20, 2020
From: SAYYED, IBRAHIM; VIDYADHARA, SUMANTH
To: DELL PRODUCTS L.P.
Reel/Frame 051872/0352 →
Continuity (1)
Related Publication 20210264032A1 · Aug 26, 2021