NVIDIA DGX H100 User Guide
7.2.1. Secure Flash of DGX H100 Firmware
Secure Flash is implemented for the DGX H100 to prevent unsigned and unveried rmware images
from being ashed onto the system.
7.2.2. Encryption
Here is some information about encrypting the DGX H100 rmware.
The rmware encryption algorithm is AES-CBC.
▶ The rmware encryption key strength is 128 bits or higher.
▶ Each rmware class uses a unique encryption key.
▶ Firmware decryption is performed either by the same agent that performs signature check or a
more trusted agent in the same COT.
7.2.3. NVIDIA System Manager Security
For information about security in NVIDIA System Management, refer to NVSM documentation page.
7.3. Secure Data Deletion
This section explains how to securely delete data from the DGX H100 system SSDs to permanently
destroy all the data that was stored there.
This process performs a more secure SSD data deletion than merely deleting les or reformatting the
SSDs.
7.3.1. Prerequisites
You need to prepare a bootable installation medium that contains the current DGX OS Server ISO
image.
Refer to Reimaging in the NVIDIA DGX OS 6 User Guide for information on the following topics:
▶ Obtaining the DGX OS ISO Image
▶ Booting the DGX OS ISO Image
52 Chapter 7. Security