SPDM-Based SDSi Processor Feature Activation via BMC
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems lack automated methods for unlocking and activating optional processor features in pay-as-you-go processors, such as Intel® Xeon® processors, and do not support auto-scaling or auto-activation based on system configuration, leading to manual intervention and potential incompatibility issues.
Innovation Solution
Implementing a system that uses Security Protocol and Data Model (SPDM) to automatically discover, provision, and activate optional hardware features via SPDM messages, with a Baseboard Management Controller (BMC) managing compatibility and auto-scaling, utilizing a credential vault and Redfish API for feature activation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Productivity
If manual user intervention is used to unlock processor features, then system complexity is reduced, but productivity and automation level deteriorate
Solution Approach 1:
The BMC automatically performs feature discovery, compatibility checking, and activation without user intervention. The system self-services by autonomously managing the entire feature activation workflow, from identifying available features to completing activation, thereby improving productivity while the automation handles complexity internally
Solution Approach 2:
The system performs preliminary compatibility checks and feature discovery before activation. The BMC预先 identifies compatible features and verifies system readiness, preparing all necessary conditions before executing activation, which streamlines the overall process and improves activation speed
2Reliability
If comprehensive compatibility checks are performed, then reliability is improved, but time consumption increases
Solution Approach 1:
The BMC performs compatibility checks and feature discovery in advance before activation. By conducting these verification steps preliminarily, the system ensures reliable feature selection while preparing all necessary information beforehand, reducing the time required during actual activation
Solution Approach 2:
The system implements feedback mechanisms where the BMC continuously monitors system state, license status, and feature compatibility. This feedback loop enables real-time verification and automatic adjustment, ensuring reliability while optimizing the timing of checks to minimize time loss
3Ease of operation
If automatic feature activation is implemented, then ease of operation is improved, but security risks worsen
Solution Approach 1:
The BMC acts as an intermediary between the user, the processor features, and the licensing system. It mediates the activation process by verifying licenses, checking compatibility, and controlling feature activation, thereby enabling ease of operation while preventing unauthorized activation through its intermediary verification role
Solution Approach 2:
The system uses feedback loops where the BMC continuously verifies license status, system compatibility, and activation state. This feedback mechanism ensures that automatic activation only occurs when proper authorization and conditions are met, maintaining security while enabling operational simplicity
Data Source
AI summary
In one embodiment, an Information Handling System (IHS), comprises an SPDM-enabled device conforming to a SPDM specification. The SPDM-enabled device causes the IHS to identify a device in the IHS having optional hardware features, provision activation data for the optional hardware features, and activate the optional hardware features by sending SPDM messages to the device. The IHS comprises a host processor module configured to host one or more processors, a secure control module configured to host a baseboard management controller, and a secure control interface configured to support communication between the secure control module and the host processor module. The one or more processors have optional hardware features. The one or more processors may be Software Defined Silicon (SDSi) devices. The baseboard management controller identifies the device having optional hardware features using a SPDM GET_CERTIFICATE request message sent to the devices.


