IP Library Granted Patent US 12,518,019
Granted Patent B2
US 12,518,019 · App. 18/363,913 · Granted Jan 6, 2026

Security context aware telemetry

Inventors: Ibrahim Sayyed (Georgetown, TX); Alan Abdelhalim (Pflugerville, TX); Daniel Hamlin (Round Rock, TX); Charles Robison (Buford, GA)
Assignee: Dell Products L.P.
G06F21/572
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,518,019
App. No.
18/363,913
Granted
Jan 6, 2026
Kind
B2
Abstract

An information handling system has a storage device including a telemetry log, a BIOS configured to provide BIOS status data and BIOS security data, an OS configured to provide OS status data and OS security data, and a security management module. The security management module determines whether the information handling system is in a low-threat state or a high-threat state. When the information handling system is in the low-threat state, the security management module directs the BIOS to store the BIOS status data to the telemetry log and the OS to store the OS status data to the telemetry log. When the information handling system is in the high-threat state, the security management module directs at least one of the BIOS to store the BIOS security data and the OS to store the OS security data.

Claims (36)

1 . An information handling system, comprising:

a storage device including a telemetry log;

a basic input/output system (BIOS) configured to provide BIOS status data and BIOS security data;

an operating system (OS) configured to provide OS status data and OS security data; and

a security manager instantiated on a processor and configured to determine whether the information handling system is in a low-threat state or a high-threat state, to direct the BIOS to store the BIOS status data to the telemetry log and the OS to store the OS status data to the telemetry log when the information handling system is in the low-threat state, and to direct at least one of the BIOS to store the BIOS security data and the OS to store the OS security data when the information handling system is in the high-threat state, wherein the security manager includes a telemetry policy module that provides correlations between the BIOS status data and the OS status data, wherein the security manager is further configured to determine a threat state based on the correlations.

2 . The information handling system of claim 1 , wherein, when the information handling system is in the high-threat state, the security manager is further configured to direct the at least one of the BIOS to store the BIOS security data to the telemetry log and the OS to store the OS security data to the telemetry log.

3 . The information handling system of claim 2 , wherein, when the security manager directs the BIOS to store the BIOS security data to the telemetry log, the security manager further directs the OS to halt storing the OS status data to the telemetry log.

4 . The information handling system of claim 2 , wherein, when the security manager directs the OS to store the OS security data to the telemetry log, the security manager further directs the BIOS to halt storing the BIOS status data to the telemetry log.

5 . The information handling system of claim 1 , wherein, when the information handling system is in the high-threat state, the security manager is further configured to direct the at least one of the BIOS to store the BIOS security data to a location other than the telemetry log and the OS to store the OS security data to the other location.

6 . The information handling system of claim 5 , wherein, when the security manager directs the BIOS to store the BIOS security data to the other location, the security manager further directs the BIOS to continue storing the OS status data to the telemetry log.

7 . The information handling system of claim 5 , wherein, when the security manager directs the OS to store the OS security data to the other location, the security manager further directs the OS to continue storing the OS status data to the telemetry log.

8 . The information handling system of claim 1 , further comprising:

a baseboard management controller (BMC), wherein the security manager is included in the BMC.

9 . The information handling system of claim 1 , wherein the threat state includes one of a low-threat state and a high-threat state.

10 . A method, comprising:

providing, in a storage device of an information handling system, a telemetry log;

providing, by a basic input/output system (BIOS) of the information handling system, BIOS status data and BIOS security data;

providing, by an operating system (OS) of the information handling system, OS status data and OS security data;

determining, by a security manager of the information handling system, whether the information handling system is in a low-threat state or a high-threat state;

directing the BIOS to store the BIOS status data to the telemetry log and the OS to store the OS status data to the telemetry log when the information handling system is in the low-threat state; and

directing at least one of the BIOS to store the BIOS security data and the OS to store the OS security data when the information handling system is in the high-threat state;

wherein, when the information handling system is in the high-threat state, the method further comprises directing the at least one of the BIOS to store the BIOS security data to a locations other than the telemetry log and the OS to store the OS security data to the other location; and

wherein when the security manager directs the BIOS to store the BIOS security data to the other location, the method further comprises directing the BIOS to continue storing the OS status data to the telemetry log.

11 . The method of claim 10 , wherein, when the information handling system is in the high-threat state, the method further comprises directing the at least one of the BIOS to store the BIOS security data to the telemetry log and the OS to store the OS security data to the telemetry log.

12 . The method of claim 11 wherein, when the security manager directs the BIOS to store the BIOS security data to the telemetry log, the method further comprises directing the OS to halt storing the OS status data to the telemetry log.

13 . The method of claim 11 wherein, when the security manager directs the OS to store the OS security data to the telemetry log, the method further comprises directing the BIOS to halt storing the BIOS status data to the telemetry log.

14 . The method of claim 10 , wherein when the security manager directs the OS to store the OS security data to the other location, the method further comprises:

directing the OS to continue storing the OS status data to the telemetry log.

15 . The method of claim 10 further comprising providing, on the information handling system, a baseboard management controller (BMC), wherein the security manager is included in the BMC.

16 . The method of claim 15 wherein the BMC further includes a telemetry policy module, the policy module including correlations between the BIOS status data and the OS status data, and wherein the security manager determines whether the information handling system is in the low-threat state or the high-threat state based upon the correlations.

17 . An information handling system, comprising:

a storage device including a telemetry log;

a basic input/output system (BIOS) configured to provide BIOS status data and BIOS security data;

an operating system (OS) configured to provide OS status data and OS security data;

a baseboard management controller (BMC) configured to provide BMC status data and BMC security data; and

a security manager instantiated on a processor and configured to 1) determine whether the information handling system is in a low-threat state or a high-threat state, 2) direct the BIOS to store the BIOS status data to the telemetry log, the OS to store the OS status data to the telemetry log, and the BMC to store the BMC status data to the telemetry log when the information handling system is in the low-threat state, and 3) direct at least one of the BIOS to store the BIOS security data, the OS to store the OS security data, and the BMC to store the BMC security data when the information handling system is in the high-threat state, wherein the security manager includes a telemetry policy module that provides correlations between the BIOS status data and the OS status data, wherein the security manager is further configured to determine a threat state based on the correlations.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 2, 2023
From: SAYYED, IBRAHIM; ABDELHALIM, ALAN; HAMLIN, DANIEL; ROBISON, CHARLES
To: DELL PRODUCTS L.P.
Reel/Frame 064465/0217 →
Continuity (1)
Related Publication 20250045399A1 · Feb 6, 2025
References Cited (28)
US 9710762B2 · Nakil · 2017 [cited by examiner]
US 10839071B2 · Lamothe-Brassard · 2020 [cited by applicant]
US 11269750B2 · Boyapalle et al. · 2022 [cited by applicant]
US 20050216221A1 · Broyles · 2005 [cited by examiner]
US 20080313312A1 · Flynn · 2008 [cited by examiner]
US 20110029650A1 · Shah · 2011 [cited by examiner]
US 20120215907A1 · Chung · 2012 [cited by examiner]
US 20180136940A1 · Mallichan · 2018 [cited by examiner]
US 20180217888A1 · Colgrove · 2018 [cited by examiner]
US 20180232521A1 · Jeansonne · 2018 [cited by examiner]
US 20180324027A1 · Kondapi · 2018 [cited by examiner]
US 20190012465A1 · Kim · 2019 [cited by examiner]
US 20200159646A1 · Fujii · 2020 [cited by examiner]
US 20200226262A1 · Yeh · 2020 [cited by examiner]
US 20200250017A1 · Samuel · 2020 [cited by examiner]
US 20200364342A1 · Martinez · 2020 [cited by examiner]
US 20210026737A1 · McAdams · 2021 [cited by examiner]
US 20210034756A1 · Vichare · 2021 [cited by examiner]
US 20210208869A1 · Nachimuthu · 2021 [cited by examiner]
US 20220012339A1 · Martinez · 2022 [cited by examiner]
US 20220188423A1 · Ndu · 2022 [cited by examiner]
US 20220269543A1 · Samuel · 2022 [cited by examiner]
US 20220284097A1 · McGarry · 2022 [cited by examiner]
US 20240241965A1 · Andrews · 2024 [cited by examiner]
US 20240411904A1 · Lewis · 2024 [cited by examiner]
US 20250077675A1 · Stewart · 2025 [cited by examiner]
CN 115269238A · 2022 [cited by examiner]
Lin, Zhen-hua. CN 115269238 A (machine translation), published Nov. 1, 2022-. (Year: 2022). [cited by examiner]