US 11,810,062 B2
Validating secure modifications to information handling systems
Jason Matthew Young, Round Rock, TX (US); Marshal F. Savage, Austin, TX (US); and Mukund P. Khatri, Austin, TX (US)
Assigned to Dell Products L.P., Round Rock, TX (US)
Filed by Dell Products, L.P., Round Rock, TX (US)
Filed on Dec. 30, 2020, as Appl. No. 17/137,976.
Prior Publication US 2022/0207463 A1, Jun. 30, 2022
Int. Cl. G06Q 10/087 (2023.01); G06F 21/73 (2013.01); G06Q 10/0833 (2023.01)
CPC G06Q 10/087 (2013.01) [G06F 21/73 (2013.01); G06Q 10/0833 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method for validating hardware components of an IHS (Information Handling System), the method comprising:
during factory provisioning of the IHS, generating an original inventory certificate that includes an inventory identifying a plurality of hardware components installed during factory assembly of the IHS, wherein the original inventory certificate is stored for use by a remote validation service;
installing a first hardware component delivered once the IHS has been delivered and deployed, wherein the remote validation service tracks the delivery of hardware components by trusted entities for installation in the IHS once the IHS has been delivered and deployed;
once the IHS has been delivered and deployed, transmitting a certificate signing request from the IHS to the remote validation service, wherein the request reports an inventory of hardware components detected during initialization of the IHS, including the first hardware component;
confirming, by the remote validation service, the hardware components reported by the IHS as detected during initialization of the IHS includes only hardware components installed during factory assembly of the IHS and hardware components that have been tracked by the remote validation services as delivered for installation in the IHS;
generating, by the remote validation service, a new inventory certificate that includes the inventory of hardware components detected during initialization of the IHS when the hardware components reported by the IHS include only hardware components installed during factory assembly of the IHS and hardware components tracked by the remote validation services as delivered for installation in the IHS; and
transmitting, by the remote validation service, the new inventory certificate to the IHS.