Secure communication channel for OS access to management controller
Abstract:
An information handling system may include a host information handling system that is configured to execute a host operating system (OS), a management controller configured to provide out-of-band management of the information handling system, a cryptoprocessor, and a dual-port random-access memory (RAM). The information handling system may be configured to: generate, at the cryptoprocessor, a cryptographic key pair comprising a public key and a private key; transmit a token from the cryptoprocessor to the host information handling system, wherein the token is signed with the private key; transmit the public key from the cryptoprocessor to the dual-port RAM; transmit the public key from the dual-port RAM to the management controller; and based on a verification of the token with the public key, grant access to the management controller from the host OS.
Information query
Patent Agency Ranking
0/0