Remote Facial Recognition Provisioning for Shared Heterogeneous IHS
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The transition from x86 to ARM-based processors in Information Handling Systems (IHSs) presents challenges in management, customization, optimization, interaction, and configuration, particularly in heterogeneous computing environments where multiple users share devices.
Innovation Solution
A heterogeneous computing platform with an orchestrator device that facilitates remote provisioning of facial recognition data, enabling operations like user authentication and onlooker detection, using an out-of-band management channel and firmware services without host OS involvement, and managing context data through APIs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Speed
If facial recognition data is stored locally on the IHS for quick authentication, then authentication speed is improved, but security and privacy risks increase in shared environments
Solution Approach 1:
The patent extracts facial recognition data from local IHS storage and places it on remote servers. The orchestrator retrieves only necessary authentication results from the server rather than storing sensitive biometric data locally, thereby improving security while maintaining authentication speed through efficient data retrieval mechanisms.
Solution Approach 2:
The patent introduces an orchestrator and firmware service as intermediaries between the user authentication process and the facial recognition data. The orchestrator manages secure communication with remote servers, and the firmware service handles authentication operations without requiring host OS involvement, creating a secure intermediary layer that protects user privacy while enabling fast authentication.
2Adaptability or versatility
If the system provisions facial recognition data for multiple users in a shared environment, then user accessibility is improved, but data management complexity increases
Solution Approach 1:
The patent creates a universal firmware service that handles authentication for multiple users across different IHS devices in a hoteling environment. The orchestrator implements a standardized interface that works across heterogeneous computing platforms (x86, ARM, FPGA, ASIC), allowing the same system to serve multiple users with different authentication needs without increasing management complexity.
Solution Approach 2:
The patent implements automatic user provisioning where the orchestrator autonomously retrieves and manages facial recognition data for assigned users without manual intervention. The system automatically detects user assignments, provisions appropriate authentication data through secure channels, and manages context data through APIs, eliminating the need for complex manual data management while supporting multiple users.
3Reliability
If the orchestrator communicates with the server through out-of-band management channels, then security is improved, but communication overhead increases
Solution Approach 1:
The patent establishes secure out-of-band communication channels in advance before authentication operations are needed. The orchestrator pre-configures secure connections to the server, and facial recognition data is provisioned ahead of time, so that during actual authentication, the system can quickly retrieve pre-validated information without incurring security risks or communication delays.
Data Source
AI summary
Systems and methods for remotely provisioning facial recognition data are described. In an illustrative, non-limiting embodiment, an Information Handling System (IHS) shareable among a plurality of users in a hoteling environment may include: a heterogeneous computing platform; and a memory coupled to the heterogeneous computing platform, where the memory comprises a plurality of sets of firmware instructions, where each of the sets of firmware instructions, upon execution by a respective device among a plurality of devices of the heterogeneous computing platform, enables the respective device to provide a corresponding firmware service, and where at least one of the plurality of devices operates as an orchestrator configured to: transmit a request to a server to receive facial recognition data associated with a given one of the plurality of users assigned to the IHS, and receive the facial recognition data.


