IP Library › Granted Patent US 12,326,964
Granted Patent B2
US 12,326,964 · App. 18/498,234 · Granted Jun 10, 2025

Management of configuration of data processing systems

Inventors: Mahesh Babu Ramaiah (Bangalore, IN); Joseph Caisse (Burlington, MA); Ashutosh Kumar (Bangalore, IN)
Assignee: Dell Products L.P.
G06F21/64G06F21/31G06F21/57
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,326,964
App. No.
18/498,234
Filed
Oct 31, 2023
Granted
Jun 10, 2025
Kind
B2
Art Unit
2495
USPC
726/26
Abstract

Methods and systems for managing configuration of data processing systems are disclosed. Configuration of data processing systems may be managed by limiting connectivity to components of data processing systems and credentialing access for the components. To enable access to components of data processing systems, the operation of the components may be updated for limited durations of time to allow various devices to communicate with these components. While allowed to communicate, the components of the data process system may restrict access to credentialed users.

Claims (47)

1. A method of managing data processing systems, the method comprising:

obtaining, by hardware resources of a data processing system of the data processing systems, a security request for access to a management controller of the data processing system to configure the management controller;

deploying, by the hardware resources, a security package to the management controller to place the management controller in a configurable state of operation to enable remote secure configuration of the management controller;

obtaining, by the hardware resources and from the management controller, a configuration for validation;

attempting, by the hardware resources and responsive to the obtaining of the configuration, to verify that the configuration is a trusted configuration;

reverting, by the hardware resources and responsive to the obtaining of the configuration, the management controller to a secure state of operation; and

in an instance of the attempting where the configuration is verified as a trusted configuration:

configuring, by the hardware resources, the management controller to obtain an updated secure state of operation of the management controller.

2. The method of claim 1 , wherein while the management controller is in the secure state of operation, a user device is unable to operably connect to the management controller.

3. The method of claim 2 , wherein while the management controller is in the configurable state of operation, the user device is able to operably connect to the management controller.

4. The method of claim 1 , wherein the security package comprises a container, and the management controller is configured to deploy the container to enter the configurable state of operation.

5. The method of claim 4 , wherein the container comprises a set of credentials defined by a control plane that manages operation of the data processing system.

6. The method of claim 5 , further comprising:

obtaining, by the hardware resources, the credentials from the management controller.

7. The method of claim 6 , wherein the container comprises a configuration application adapted to enable a user that uses the credentials to access the management controller to view and modifying configurations of the management controller.

8. The method of claim 1 , further comprising:

identifying, by the hardware resources, that a duration of time from when the time at which the management controller began to operate in the configurable state,

wherein the reverting is initiated responsive to an occurrence of the duration of time.

9. The method of claim 1 , wherein the management controller is an independently operating data processing system hosted by the data processing system, and the hardware resources are distinct from the management controller.

10. The method of claim 9 , wherein the management controller comprises a system on a chip.

11. A non-transitory machine-readable medium having instructions stored therein, which when executed by a processor, cause the processor to perform operations for managing data processing systems, the operations comprising:

obtaining, by hardware resources of a data processing system of the data processing systems, a security request for access to a management controller of the data processing system to configure the management controller;

deploying, by the hardware resources, a security package to the management controller to place the management controller in a configurable state of operation to enable remote secure configuration of the management controller;

obtaining, by the hardware resources and from the management controller, a configuration for validation;

attempting, by the hardware resources and responsive to the obtaining of the configuration, to verify that the configuration is a trusted configuration;

reverting, by the hardware resources and responsive to the obtaining of the configuration, the management controller to a secure state of operation; and

in an instance of the attempting where the configuration is verified as a trusted configuration:

configuring, by the hardware resources, the management controller to obtain an updated secure state of operation of the management controller.

12. The non-transitory machine-readable medium of claim 11 , wherein while the management controller is in the secure state of operation, a user device is unable to operably connect to the management controller.

13. The non-transitory machine-readable medium of claim 12 , wherein while the management controller is in the configurable state of operation, the user device is able to operably connect to the management controller.

14. The non-transitory machine-readable medium of claim 11 , wherein the security package comprises a container, and the management controller is configured to deploy the container to enter the configurable state of operation.

15. The non-transitory machine-readable medium of claim 14 , wherein the container comprises a set of credentials defined by a control plane that manages operation of the data processing system.

16. A data processing system, comprising:

a management controller;

hardware resources comprising a processor; and

a memory coupled to the processor to store instructions, which when executed by the processor, cause the processor to perform operations, the operations comprising:

obtaining, by the hardware resources, a security request for access to the management controller to configure the management controller;

deploying, by the hardware resources, a security package to the management controller to place the management controller in a configurable state of operation to enable remote secure configuration of the management controller;

obtaining, by the hardware resources and from the management controller, a configuration for validation;

attempting, by the hardware resources and responsive to the obtaining of the configuration, to verify that the configuration is a trusted configuration;

reverting, by the hardware resources and responsive to the obtaining of the configuration, the management controller to a secure state of operation; and

in an instance of the attempting where the configuration is verified as a trusted configuration:

configuring, by the hardware resources, the management controller to obtain an updated secure state of operation of the management controller.

17. The data processing system of claim 16 , wherein while the management controller is in the secure state of operation, a user device is unable to operably connect to the management controller.

18. The data processing system of claim 17 , wherein while the management controller is in the configurable state of operation, the user device is able to operably connect to the management controller.

19. The data processing system of claim 16 , wherein the security package comprises a container, and the management controller is configured to deploy the container to enter the configurable state of operation.

20. The data processing system of claim 19 , wherein the container comprises a set of credentials defined by a control plane that manages operation of the data processing system.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 14, 2023
From: RAMAIAH, MAHESH BABU; CAISSE, JOSEPH; KUMAR, ASHUTOSH
To: DELL PRODUCTS L.P.
Reel/Frame 065551/0932 →
Continuity (1)
Related Publication 20250139295A1 · May 1, 2025
References Cited (28)
US 7599907B2 · Havewala et al. · 2009 [cited by applicant]
US 8020192B2 · Wright et al. · 2011 [cited by applicant]
US 8490163B1 · Harsell et al. · 2013 [cited by applicant]
US 8850186B2 · Yamauchi · 2014 [cited by applicant]
US 9191781B2 · Kumar · 2015 [cited by applicant]
US 9246678B2 · Nayshtut et al. · 2016 [cited by applicant]
US 9349009B2 · Rivera · 2016 [cited by applicant]
US 9721111B2 · Cavanaugh · 2017 [cited by applicant]
US 9721175B2 · Kursun et al. · 2017 [cited by applicant]
US 9785491B2 · Cilfone et al. · 2017 [cited by applicant]
US 10021669B2 · George · 2018 [cited by applicant]
US 10163105B1 · Ziraknejad et al. · 2018 [cited by applicant]
US 10169571B1 · Attfield et al. · 2019 [cited by applicant]
US 10395039B2 · Khatri et al. · 2019 [cited by applicant]
US 10630489B2 · Hughes · 2020 [cited by applicant]
US 10678555B2 · Johansson et al. · 2020 [cited by applicant]
US 10841295B1 · Pecen et al. · 2020 [cited by applicant]
US 11563565B2 · Yang et al. · 2023 [cited by applicant]
US 11704384B2 · Murphy et al. · 2023 [cited by applicant]
US 20100241836A1 · Proudler · 2010 [cited by examiner]
US 20150373538A1 · Huang · 2015 [cited by examiner]
US 20170277876A1 · Alameh et al. · 2017 [cited by applicant]
US 20170289197A1 · Mandyam et al. · 2017 [cited by applicant]
US 20180006829A1 · Kravitz et al. · 2018 [cited by applicant]
US 20190036785A1 · Pfeffer · 2019 [cited by examiner]
US 20190156019A1 · Chen · 2019 [cited by applicant]
US 20210004464A1 · Lundeby · 2021 [cited by examiner]
US 20220222328A1 · Talib et al. · 2022 [cited by applicant]