BMC Security for Hot-Plugged Self-Encrypting Drives
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Self-encrypting drives hot-plugged into a computer system after boot-up cannot be accessed by the operating system due to the unavailability of the key encrypting key, leading to potential service events and customer disruptions, and existing solutions are inflexible and require significant maintenance or access to remote key servers.
Innovation Solution
A baseboard management controller performs security operations, such as credential management and authentication, using an out-of-band channel to communicate with the self-encrypting drive while its bus interface is held in reset, allowing it to retrieve and provide the key encrypting key, and then releases the interface for operating system access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If the operating system attempts to access a hot-plugged self-encrypting drive, then the drive becomes accessible for data operations, but the drive cannot be accessed due to unavailability of the key encrypting key
Solution Approach 1:
The baseboard management controller performs preliminary authentication and retrieves the key encrypting key before the operating system attempts to access the hot-plugged self-encrypting drive. This preliminary action ensures the drive is properly initialized and accessible when the operating system needs it, preventing access failures.
Solution Approach 2:
The baseboard management controller acts as an intermediary between the operating system and the self-encrypting drive. It handles the complex authentication and key management operations, shielding the operating system from these complexities while ensuring reliable drive access.
2Adaptability or versatility
If existing solutions are used to manage credentials for hot-plugged drives, then credential management is possible, but the solutions are inflexible and require significant maintenance
Solution Approach 1:
The baseboard management controller autonomously performs authentication and credential management operations for hot-plugged self-encrypting drives without requiring external intervention or complex configuration. This self-service capability reduces maintenance burden while maintaining flexibility in handling different drive authentication scenarios.
3Extent of automation
If security operations are performed through the operating system, then the operating system can manage drive access, but service disruptions occur when keys are unavailable
Solution Approach 1:
The security and credential management operations are extracted from the operating system and transferred to the baseboard management controller. This separation allows automated key management to occur independently of the operating system, ensuring service continuity even when the operating system is not yet running or encounters issues.
Solution Approach 2:
The baseboard management controller performs preliminary authentication and key retrieval operations before the operating system needs to access the drive. This ensures that when the operating system attempts to use the hot-plugged self-encrypting drive, all security operations are already complete, preventing service disruptions.
Data Source
AI summary
A technique includes holding a bus interface of a removable device that is inserted into a connector of a computer system in a state to prevent the device from communicating with a communication link. The communication link is coupled to the connector and is associated with operating system access to the device. The method includes a baseboard management controller communicating with the device using a channel other than the communication link while the bus interface of the device is held in the state; the baseboard management controller performing a security operation corresponding to the device based on the communication with the device using the channel; and the baseboard management controller releasing the bus interface of the device from the state to allow the device to communicate with the communication link in response to the baseboard management controller completing the security operation.


