IP Library Granted Patent US 8,738,894
Granted Patent B2
US 8,738,894 · App. 13/867,246 · Granted May 27, 2014

Methods for firmware signature

Inventors: Brian A. Batke (Novelty, OH); Jack M. Visoky (Willoughby, OH); James J. Kay (Chardon, OH); Scott A. Mintz (Solon, OH); William B. Cook (Northfield, OH)
Assignee: Rockwell Automation Technologies, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,738,894
App. No.
13/867,246
Granted
May 27, 2014
Kind
B2
Abstract

A method for installing embedded firmware is provided. The method includes generating one or more firmware file instances and generating one or more digital certificate instances that are separate instances from the firmware file instances. The method includes associating the one or more digital certificate instances with the one or more firmware file instances to facilitate updating signature-unaware modules with signature-aware firmware or to facilitate updating signature-aware modules with signature-unaware firmware.

Claims (29)

1. A method, comprising:

receiving, by a first device, signature unaware firmware code;

installing, by the first device via boot code, the signature unaware firmware code on the first device, wherein the boot code is configured for installation of a signature aware firmware code and the signature unaware firmware code to the first device, wherein the installing the signature unaware firmware code further comprises verifying, via at least one feedback mechanism, that the signature unaware firmware code is received from a second device associated with a user that has physical access to the first device.

2. The method of claim 1 , wherein the installing the signature unaware firmware code further comprises verifying that the signature unaware firmware code is received from a proxy module located remotely from the first device, where the proxy module has verified the signature unaware firmware code.

3. The method of claim 1 , wherein the installing the signature unaware firmware code further comprises receiving from a proxy module that intercepted a request to install the signature unaware firmware code on the first device, a signed certificate comprising a signature generated by the proxy module.

4. The method of claim 3 , wherein the installing the signature unaware firmware code further comprises:

determining whether the certificate is valid by verifying that the signature of the signed certificate is valid;

in response to the certificate being valid, loading the signature unaware firmware code on the first device; and

in response to the certificate being invalid, preventing installation of the signature unaware firmware code on the first device.

5. The method of claim 4 , wherein the determining whether the certificate is valid further comprises verifying that the signature unaware firmware code is valid for the certificate.

6. A non-transitory computer-readable medium having instructions stored thereon that, in response to execution, cause a first device to perform operations comprising:

receiving signature unaware firmware code;

installing, via boot code, the signature unaware firmware code on the first device, wherein the boot code is configure for installation of a signature aware firmware code and the signature unaware firmware code to the first device, wherein the installing the signature unaware firmware code further comprises verifying, via at least one feedback mechanism, that the signature unaware firmware code is received from a second device associated with a user that has physical access to the first device.

7. The non-transitory computer-readable medium of claim 6 , wherein the installing the signature unaware firmware code further comprises verifying, via the boot code, that the signature unaware firmware code is received from a proxy module located remotely from the first device, where the proxy module has verified the signature unaware firmware code.

8. The non-transitory computer-readable medium of claim 6 , wherein the installing the signature unaware firmware code further comprises receiving from a proxy module that intercepted a request to install the signature unaware firmware code on the first device, a signed certificate comprising a signature generated by the proxy module.

9. The non-transitory computer-readable medium of claim 8 , wherein the installing the signature unaware firmware code further comprises:

determining whether the certificate is valid by verifying that the signature of the signed certificate is valid;

in response to the certificate being valid, loading the signature unaware firmware code on the first device; and

in response to the certificate being invalid, preventing installation of the signature unaware firmware code on the first device.

10. The non-transitory computer-readable medium of claim 9 , wherein the determining whether the certificate is valid further comprises verifying that the signature unaware firmware code is valid for the certificate.

11. A system, comprising:

a first device configured to receive signature unaware firmware code;

a boot code installed on the first device configured to install the signature unaware firmware code on the first device, wherein the boot code is configured for installation of a signature aware firmware code and the signature unaware firmware code on the first device, wherein the boot code, prior to installing the signature unaware firmware code, verifies, via at least one feedback mechanism, that the signature unaware firmware code is received from a second device associated with a user that has physical access to the first device.

12. The system of claim 11 , wherein the boot code, prior to installing the signature unaware firmware code, verifies that the signature unaware firmware code is received from a proxy module located remotely from the first device, where the proxy module has verified the signature unaware firmware code.

13. The system of claim 11 , wherein the boot code, prior to installing the signature unaware firmware code, receives from a proxy module that intercepted a request to install the signature unaware firmware code on the first device, a signed certificate comprising a signature generated by the proxy module.

14. The system of claim 13 , wherein the boot code, prior to installing the signature unaware firmware code:

determines whether the certificate is valid by verifying that the signature of the signed certificate is valid;

in response to the certificate being valid, loads the signature unaware firmware code on the first device; and

in response to the certificate being invalid, prevents installation of the signature unaware firmware code on the first device.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 24, 2025
From: ROCKWELL AUTOMATION TECHNOLOGIES, INC.
To: IP3 2025, SERIES 925 OF ALLIED SECURITY TRUST I
Reel/Frame 073012/0620 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 22, 2013
From: BATKE, BRIAN A.; VISOKY, JACK M.; KAY, JAMES J.; MINTZ, SCOTT A.; COOK, WILLIAM B.
To: ROCKWELL AUTOMATION TECHNOLOGIES, INC.
Reel/Frame 030259/0447 →
Continuity (2)
Continuation 12829261 · Jul 1, 2010
Related Publication 20130238886A1 · Sep 12, 2013