Management Processor Secure Firmware Update via In-Band Interface

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Computing systems face vulnerabilities during firmware and software updates due to the need for OS credentials, which can lead to malicious attacks, and the deployment of agents consumes resources and adds manageability overhead.

Innovation Solution

Implementing a management processor that allows secure firmware and software updates without external agents or OS credential sharing, using an update manager with predefined access rights and privileges to securely download and install updates via a secure in-band interface, utilizing unique keys and certificates for authentication.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If OS credentials are shared to enable firmware and software updates, then update capability is improved, but security vulnerability increases

Engineering Contradiction:
Improveupdate capabilityVSAvoidsecurity vulnerability
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

A management processor is introduced as an intermediary component between the OS and firmware/software update mechanisms. The management processor has direct access to firmware and software components and can perform updates without requiring OS credentials, thereby enabling update capability while eliminating security vulnerabilities associated with credential sharing

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The system is segmented into two independent update paths: one for OS-managed software updates and another for management processor-managed firmware updates. This segmentation allows firmware updates to occur independently without involving OS credentials, resolving the contradiction between update capability and security

Inventive Principle:
Principle #1Segmentation

2Reliability

If agents are deployed to enable secure updates, then security is improved, but device complexity and resource consumption increase

Engineering Contradiction:
ImprovesecurityVSAvoidmanageability overhead
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The management processor is designed to autonomously perform firmware and software updates without requiring external agents. It directly accesses update repositories, downloads updates, and installs them on target components independently, eliminating the need for agent deployment and associated complexity

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The management processor serves multiple functions including system monitoring, event logging, and firmware/software updates. By consolidating these functions into a single component, the system avoids the complexity of deploying separate agents for each function while maintaining security

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS10489145B2Secure update of firmware and software
Publication Date: 2019.11.26 HEWLETT PACKARD ENTERPRISE DEV LP
  • US10489145B2 patent drawing
  • US10489145B2 patent drawing
  • US10489145B2 patent drawing

AI summary

Example implementations relate to secure update of firmware and software. For example, a method for providing secure firmware and software updates to a computing system includes receiving, by a management processor, an update request from a management station for the computing system, where the update request comprises update parameters indicative of components to be updated within the computing system. Further, the method includes storing details of the update request including the update parameters at a pre-defined memory location, where the update parameters include at least one certificate associated with the update request. The method also includes accessing, at least one of a firmware image and a software patch corresponding to the update request based on identification of the update parameters stored at the pre-defined memory location by an update manager, where the update manager has predefined access rights and privileges within an Operating System (OS) of the computing system.