Removable TPM Module Binding to System Planar

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing information handling systems require different TPM devices for various end-use applications, necessitating multiple system boards with specific TPMs, which is costly and inefficient for inventory management and flexibility.

Innovation Solution

A removable TPM subsystem module that can be plugged into an information handling system, providing a core root of trust without permanent attachment, allowing for multiple TPM types and configurations from different manufacturers, while maintaining transitive trust and remote attestation, using non-volatile storage for binding data and TCG-compliant binding.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If different types of TPM devices are selected for different end-use applications, then security requirements are met, but system board variety and inventory complexity increase

Engineering Contradiction:
Improvesecurity requirement complianceVSAvoidsystem board variety
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent implements a universal system board design that can accommodate multiple TPM device types through a standardized TPM socket interface. This allows a single system board to support different TPM devices for different end-use applications, eliminating the need to manufacture multiple variants of system boards while maintaining the ability to meet diverse security requirements.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If multiple system boards with specific TPMs are manufactured, then specific security applications are satisfied, but manufacturing cost and inventory management difficulty increase

Engineering Contradiction:
Improvesecurity application complianceVSAvoidinventory management
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

By designing a universal system board with a standardized TPM socket, the patent enables a single board design to serve multiple security applications. This reduces manufacturing complexity and inventory management burden, as only one type of system board needs to be produced and stocked, while still allowing selection of appropriate TPM devices for specific security requirements.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The patent separates the TPM device from the system board, making the TPM a removable component rather than being permanently integrated. This segmentation allows the system board to remain universal while TPM devices can be selected and replaced based on specific application needs, simplifying both manufacturing and inventory management.

Inventive Principle:
Principle #1Segmentation

3Reliability

If TPM is permanently attached by soldering, then security and trust chain are maintained, but flexibility and ease of replacement are reduced

Engineering Contradiction:
Improvetrust chain integrityVSAvoidTPM replacement flexibility
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The patent divides the TPM subsystem into a separate removable module that interfaces with the system board through a standardized socket. This segmentation maintains security and trust chain integrity through proper binding mechanisms while enabling easy removal and replacement of the TPM device without affecting the system board or requiring soldering operations.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The standardized TPM socket acts as an intermediary between the system board and the TPM device. This intermediary connection maintains the security and trust relationships through proper binding protocols while providing mechanical and electrical interfaces that enable easy insertion and removal, thus balancing security requirements with operational flexibility.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8245053B2Methods and systems for binding a removable trusted platform module to an information handling system
Publication Date: 2012.08.14 DELL PROD LP
  • US8245053B2 patent drawing
  • US8245053B2 patent drawing
  • US8245053B2 patent drawing

AI summary

Methods and systems for binding a removable trusted platform module (TPM) subsystem module to an information handling system to provide a core root of trust for the information handling system without requiring soldering down or other hard and permanent (non-removable) attachment of a TPM device to the information handling system planar (e.g., motherboard). The removable TPM subsystem module may be a plug-in module that may be removed from the information handling system planar (e.g., motherboard), while at the same time maintaining the transitive chain of trust, and being capable of remotely attesting its trusted state. An information handling system platform may be provided that has the capability and flexibility of supporting multiple TPMs on the same system planar.