BIOS Application Store for Secure Pre-Boot Updates
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current BIOS technologies lack comprehensive security measures, efficient pre-boot environment enhancements, and automated updating capabilities, limiting their ability to securely manage and update BIOS without user intervention or operating system boot.
Innovation Solution
The proposed solution involves a secure BIOS system that maintains a hidden flash memory copy for recovery, employs checksum and certificate comparisons for security verification, supports downloadable Linux C++ in the pre-boot phase, enables automatic BIOS updates over-the-air, and integrates an application store for pre- and post-boot applications, along with enhanced media player capabilities and instant-on functionality.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If BIOS is updated with new programs and functionality, then adaptability and versatility improve, but device complexity increases
Solution Approach 1:
The BIOS is divided into separate modules including core BIOS, extension programs, and application programs. Each module can be independently updated and managed, allowing new functionality to be added without complicating the entire BIOS structure. The segmentation enables selective loading and execution of specific programs based on system needs.
Solution Approach 2:
Extension programs and application programs are nested within the BIOS architecture, with application programs being loaded and executed within the pre-boot environment established by the core BIOS. This nested structure allows multiple layers of functionality to coexist without increasing overall system complexity, as each layer operates within the framework of the previous layer.
2Reliability
If security verification mechanisms are implemented, then reliability improves, but ease of operation deteriorates
Solution Approach 1:
The BIOS system performs self-verification through automated checksum and certificate validation of extension programs and application programs. The system autonomously checks security credentials without requiring user intervention, and automatically loads or rejects programs based on verification results. This self-service approach maintains high security while preserving ease of operation.
Solution Approach 2:
Security verification is performed in advance during the pre-boot environment before any application programs are executed. Checksum and certificate validations are conducted preliminarily to ensure system reliability, and only after successful verification are programs loaded and run, eliminating the need for user involvement in security checks.
3Productivity
If automated update capabilities are added, then productivity improves, but device complexity increases
Solution Approach 1:
The BIOS system automatically checks for, downloads, and installs updates to extension programs and application programs without user intervention. The system self-manages the entire update process including verification of update integrity and automatic installation, improving productivity while managing complexity through automated routines.
Solution Approach 2:
The system implements feedback mechanisms to monitor the system state, detect when updates are needed, and automatically execute update procedures. The feedback loop ensures that updates are applied promptly when available, improving productivity while the automated nature of the feedback mechanism prevents excessive complexity by using standardized protocols.
Data Source
AI summary
Approaches for augmenting a BIOS with a new program. A BIOS provides an interface through which a user may select one or more programs from a plurality of offered programs. When the BIOS receives input from the user that selects a particular program, the BIOS retrieves, over a network, the particular program. Received applications may be stored in the BIOS or in a hidden file that the BIOS can also access without booting the operating system. An online application store can offer applications that are signed by the BIOS issuer as being approved for plug-in applications for use in a pre-boot or post-boot environment.


