IHS Firmware Validation via Inventory Certificate Comparison

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Information Handling Systems (IHSs) face challenges in ensuring that firmware remains in a fixed, factory-provisioned configuration to maintain security and prevent unauthorized modifications, especially in customized systems where firmware integrity is critical for secure operations.

Innovation Solution

The method involves retrieving and comparing inventory certificates to validate that only factory-provisioned firmware is used by the IHS, signaling failures if non-factory-provisioned firmware is detected, and allowing updates to ensure continued compliance with a fixed firmware profile, which can include secure boot procedures and restricted remote management.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If firmware validation is implemented to ensure only factory-provisioned firmware is used, then security and firmware integrity are improved, but system complexity and operational restrictions increase

Engineering Contradiction:
Improvefirmware integrityVSAvoidvalidation system complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent applies preliminary action by creating and storing an inventory certificate during factory provisioning that contains the expected firmware inventory hash. This pre-established reference is then used during operational validation to compare against current firmware states, eliminating the need for complex real-time analysis and simplifying the validation process while maintaining security.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The system applies self-service by implementing automated firmware validation where the IHS independently compares its current firmware inventory against the stored inventory certificate. The system automatically detects discrepancies and can self-correct by halting boot processes or alerting administrators, reducing the need for external validation infrastructure.

Inventive Principle:
Principle #25Self-service

2Reliability

If firmware modifications are prevented to maintain security, then system security is improved, but adaptability and ease of maintenance deteriorate

Engineering Contradiction:
ImprovesecurityVSAvoidfirmware adaptability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent applies dynamics by making the firmware validation system configurable through multiple operational modes (strict validation, warning-only, and disabled). This allows the system to dynamically adjust its enforcement level based on operational context, enabling both secure fixed configurations and flexible maintenance scenarios without compromising the underlying security architecture.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The system applies parameter changes by modifying the validation enforcement parameter based on operational needs. The inventory certificate validation can be adjusted between strict enforcement (halting boot on mismatch), warning mode (allowing operation with alerts), or disabled mode, enabling the same technical infrastructure to serve both security-critical and maintenance-friendly operations.

Inventive Principle:
Principle #35Parameter changes

3Reliability

If inventory certificates are stored and validated for each IHS, then firmware traceability and security are improved, but data storage requirements and processing overhead increase

Engineering Contradiction:
Improvefirmware traceabilityVSAvoiddata storage requirements
Core Design Contradiction:
ReliabilityVSQuantity of substance

Solution Approach 1:

The patent applies taking out by extracting only the essential validation data (firmware inventory hash) into a compact inventory certificate stored on the IHS. This extracted reference enables validation without requiring storage of complete firmware images or complex validation databases, significantly reducing data storage requirements while maintaining full traceability and security validation capabilities.

Inventive Principle:
Principle #2Taking out (Extraction)

Data Source

PatentUS11907373B2Validation of fixed firmware profiles for information handling systems
Publication Date: 2024.02.20 DELL PROD LP
  • US11907373B2 patent drawing
  • US11907373B2 patent drawing
  • US11907373B2 patent drawing

AI summary

Systems and procedures are provided for validating an IHS (Information Handling System) as operating using only factory-provisioned firmware. During factory provisioning of the IHS, a signed inventory certificate is uploaded to the IHS that includes an inventory identifying firmware for use in the operation of the IHS. Upon delivery and initialization of the IHS, the inventory certificate is retrieved by a pre-boot validation process. An inventory of firmware used by hardware components of the IHS is then collected. The validation process compares the collected inventory of firmware against the inventory of factory-provisioned firmware from the inventory certificate in order to validate the IHS is operating using only factory-provisioned firmware. A validation failure is signaled when the comparison indicates that a hardware component is not operating using the factory-provisioned firmware specified in the inventory certificate. Embodiments also support use of updated inventory certificates in accommodating authorized updates to the IHS firmware.