IP Library Granted Patent US 11,030,347
Granted Patent B2
US 11,030,347 · App. 16/353,728 · Granted Jun 8, 2021

Protect computing device using hash based on power event

Inventor: Eric J Gonzalez Mendez (Aguadilla, PR)
Assignee: Hewlett Packard Enterprise Development LP
G06F21/73G06F21/72G06F21/81
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,030,347
App. No.
16/353,728
Filed
Mar 14, 2019
Granted
Jun 8, 2021
Kind
B2
Art Unit
2437
USPC
726/34
Abstract

Examples disclosed herein relate to protecting a computing device by using hashes. A baseboard management controller is to facilitate taking an inventory of components of the computing device. The baseboard management controller is also to determine a number of times the computing device has been powered on. The baseboard management controller generates a hash using a function of the number of times the computing device has been powered on and the inventory.

Claims (55)

1. A computing device comprising:

at least one processing element;

at least one memory device;

a bus including at least one bus device;

a system board;

a baseboard management controller separate from the at least one processing element that is to:

facilitate taking an inventory of the computing device including a plurality of components, wherein the inventory includes information about the at least one processing element, the at least one memory device, the system board, and the at least one bus device on the bus;

determine a number of times a power event occurs on the computing device; and

generate a hash using a function of the number and the inventory.

2. The computing device of claim 1 , wherein the baseboard management controller is further to:

receive, via an input mechanism, a value; and

determine whether a security event has occurred based on a comparison of the value and the hash.

3. The computing device of claim 2 , wherein the baseboard management controller is further to:

perform a security action in response to a determination that the security event has occurred.

4. The computing device of claim 3 , wherein the baseboard management controller is further to:

provide, as part of the security action, the number of times the power event has occurred.

5. The computing device of claim 3 , wherein the value is generated from a manufacturing inventory and a second function of a second number of times the power event has occurred at a time at the end of the computing device being in a factory security state.

6. The computing device of claim 5 , wherein the baseboard management controller is further to:

generate the hash on the next power on of the computing device compared to the generation of the value.

7. The computing device of claim 5 , wherein the hash is based on the function including the number of power events minus one.

8. A method comprising:

taking, by a baseboard management controller (BMC) of a computing system, an inventory of the computing system including a plurality of components,

wherein the computing system includes at least one processing element, at least one memory device, a bus including at least one bus device, the BMC, and a system board,

wherein the BMC is separate from the at least one processing element,

wherein the inventory includes information about the at least one processing element, the at least one memory device, the system board, and the at least one bus device on the bus;

determining, by the BMC, a number of times the computing system is powered on; and

generating, by the BMC, a hash using a function of the number and the inventory.

9. The method of claim 8 , further comprising:

receiving, by the BMC, via an input mechanism, a value; and

determining whether a security event has occurred based on a comparison of the value and the hash.

10. The method of claim 9 , further comprising:

performing, by the BMC, a security action in response to a determination that the security event has occurred.

11. The method of claim 10 , further comprising:

providing, by the BMC, as part of the security action, the number of times the computing device has been powered on.

12. The method of claim 10 , wherein the value is generated using a second function based on a manufacturing inventory of the computing system and a second number of times the computing system was powered on at a time at the end of the computing system being in a factory security state.

13. The method of claim 12 , further comprising:

generating the hash on the next power on of the computing system from a shutdown at the end of the factory security state.

14. The method of claim 12 , wherein the hash is based on the function including the number of times the computing device has been powered on minus one.

15. A non-transitory machine-readable storage medium storing instructions that, if executed by a baseboard management controller (BMC), cause the BMC to:

take an inventory of a computing system including a plurality of components,

wherein the computing system includes at least one processing element, at least one memory device, a bus including at least one bus device, the BMC, and a system board,

wherein the BMC is separate from the at least one processing element,

wherein the inventory includes information about the at least one processing element, the at least one memory device, the system board, and the at least one bus device on the bus;

determine a number of times the computing system is powered on;

generate, a hash using a function of the number and the inventory;

receive a value; and

determine whether a security event has occurred based on a comparison of the value and the hash.

16. The non-transitory machine-readable storage medium of claim 15 , further comprising instructions that, if executed by the BMC, cause the BMC to:

perform security action in response to a determination that the security event has occurred.

17. The non-transitory machine-readable storage medium of claim 16 , further comprising instructions that, if executed by the BMC, cause the BMC to:

provide as part of the security action, the number of times the computing device has been powered on.

18. The non-transitory machine-readable storage medium of claim 16 , wherein the value is generated using a second function based on the inventory and a second number of times the computing system was powered on at a time at the end of the computing system being in a factory security state.

19. The non-transitory machine-readable storage medium of claim 18 , further comprising instructions that, if executed by the BMC, cause the BMC to:

generate the hash on the next power on of the computing system compared to the power on of the computing system used to generate the value.

20. The non-transitory machine-readable storage medium of claim 18 , wherein the hash is based on the function including the number of times the computing system has been powered on minus one.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 14, 2019
From: GONZALEZ MENDEZ, ERIC J
To: HEWLETT PACKARD ENTERPRISE DEVELOPMENT LP
Reel/Frame 048607/0060 →
Continuity (1)
Related Publication 20200293694A1 · Sep 17, 2020