IP Library Granted Patent US 11,500,995
Granted Patent B1
US 11,500,995 · App. 17/240,787 · Granted Nov 15, 2022

Secure boot runtime universal filesystem

Inventors: Sumanth Vidyadhara (Bangalore, IN); Vivek Viswanathan Iyer (Austin, TX); Shubham Kumar (Chakradharpur, IN)
Assignee: Dell Products L.P.
G06F21/575G06F9/4411
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,500,995
App. No.
17/240,787
Filed
Apr 26, 2021
Granted
Nov 15, 2022
Kind
B1
Art Unit
2186
USPC
713/2
Abstract

An information handling system may include at least one processor; and a computer-readable medium having instructions thereon that are executable by the at least one processor for: prior to initialization of an operating system, executing a pre-boot environment; and within the pre-boot environment, downloading a universal filesystem driver from a first back-end server and loading the universal filesystem driver in the pre-boot environment, wherein the universal filesystem driver is a single pre-boot firmware volume that comprises drivers for a plurality of different filesystems.

Claims (28)

1. An information handling system comprising:

at least one processor; and

a computer-readable medium having instructions thereon that are executable by the at least one processor for:

prior to initialization of an operating system, executing a pre-boot environment; and

within the pre-boot environment, downloading a universal filesystem driver from a first back-end server and loading the universal filesystem driver in the pre-boot environment, wherein the universal filesystem driver is a single pre-boot firmware volume that comprises drivers for a plurality of different filesystems;

wherein the pre-boot environment is further configured to download a file from a second back-end server, and wherein the downloaded file comprises metadata including a secure universal file system identifier that indicates a filesystem type associated with the file.

2. The information handling system of claim 1 , wherein the pre-boot environment is a Unified Extensible Firmware Interface (UEFI) Basic Input/Output System (BIOS) pre-boot environment.

3. The information handling system of claim 1 , wherein the second back-end server is a server of a manufacturer of the information handling system.

4. The information handling system of claim 1 , wherein the first and second back-end servers are the same.

5. The information handling system of claim 1 , wherein a specific filesystem driver is extracted from the universal filesystem driver and dispatched in the pre-boot environment based on the filesystem type associated with the file.

6. The information handling system of claim 1 , wherein the downloaded file comprises metadata including a per-segment identifier for verification of segments of the downloaded file.

7. The information handling system of claim 1 , wherein the downloaded file comprises executable code, and wherein the universal filesystem driver is configured to verify the downloaded file by checking for malicious behavior in the executable code.

8. A method comprising:

an information handling system executing a pre-boot environment prior to initialization of an operating system;

within the pre-boot environment, the information handling system downloading a universal filesystem driver from a first back-end server and loading the universal filesystem driver in the pre-boot environment, wherein the universal filesystem driver is a single pre-boot firmware volume that comprises drivers for a plurality of different filesystems; and

the pre-boot environment downloading a file from a second back-end server, wherein the downloaded file comprises metadata including a secure universal file system identifier that indicates a filesystem type associated with the file.

9. The method of claim 8 , wherein the pre-boot environment is a Unified Extensible Firmware Interface (UEFI) Basic Input/Output System (BIOS) pre-boot environment.

10. The method of claim 8 , wherein the second back-end server is a server of a manufacturer of the information handling system.

11. The method of claim 8 , wherein the downloaded file comprises metadata including a per-segment identifier for verification of segments of the downloaded file.

12. The method of claim 8 , wherein the downloaded file comprises executable code, and wherein the method further comprises: the universal filesystem driver verifying the downloaded file by checking for malicious behavior in the executable code.

13. An article of manufacture comprising a non-transitory, computer-readable medium having computer-executable code thereon that is executable by a processor of an information handling system for:

executing a pre-boot environment prior to initialization of an operating system;

within the pre-boot environment, downloading a universal filesystem driver from a first back-end server and loading the universal filesystem driver in the pre-boot environment, wherein the universal filesystem driver is a single pre-boot firmware volume that comprises drivers for a plurality of different filesystems; and

the pre-boot environment downloading a file from a second back-end server, wherein the downloaded file comprises metadata including a secure universal file system identifier that indicates a filesystem type associated with the file.

14. The article of claim 13 , wherein the universal filesystem driver is further configured to read and write a host-based filesystem of the information handling system.

15. The article of claim 13 , wherein the second back-end server is a server of a manufacturer of the information handling system.

16. The article of claim 13 , wherein the downloaded file comprises metadata including a per-segment identifier for verification of segments of the downloaded file.

17. The article of claim 13 , wherein the downloaded file comprises executable code, and wherein the universal filesystem driver is configured to verify the downloaded file by checking for malicious behavior in the executable code.

Assignments (10)
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (056295/0280) Recorded Jun 10, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 062022/0255 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (056295/0124) Recorded Jun 10, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 062022/0012 →
RELEASE OF SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME (056295/0001) Recorded Jun 10, 2022
From: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 062021/0844 →
RELEASE OF SECURITY INTEREST Recorded Nov 2, 2021
From: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
To: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
Reel/Frame 058297/0332 →
SECURITY INTEREST Recorded May 19, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 056295/0124 →
SECURITY INTEREST Recorded May 19, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 056295/0001 →
SECURITY INTEREST Recorded May 19, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: THE BANK OF NEW YORK MELLON TRUST COMPANY, N.A., AS NOTES COLLATERAL AGENT
Reel/Frame 056295/0280 →
CORRECTIVE ASSIGNMENT TO CORRECT THE MISSING PATENTS THAT WERE ON THE ORIGINAL SCHEDULED SUBMITTED BUT NOT ENTERED PREVIOUSLY RECORDED AT REEL: 056250 FRAME: 0541. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded May 17, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 056311/0781 →
SECURITY AGREEMENT Recorded May 14, 2021
From: DELL PRODUCTS L.P.; EMC IP HOLDING COMPANY LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH
Reel/Frame 056250/0541 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2021
From: VIDYADHARA, SUMANTH; IYER, VIVEK VISWANATHAN; KUMAR, SHUBHAM
To: DELL PRODUCTS L.P.
Reel/Frame 056058/0870 →