•
•
•
•
•
•
•
•
•
If a firmware image contains a timestamp, the burning tool will automatically attempt
to set it on the device. If the operation succeeds, the firmware will be burnt.
If a timestamp was only set on the device, the burning tool will prevent the burning of
any firmware version different than the one set in the timestamp set operation.
Lack of timestamp in both image and device will cause no checks to be performed.
mstflint Limitations
When running mstflint via an MTUSB-1 device, a burn/query command may take up to
45minutes to complete.
To accelerate the burn process add the flag -no_flash_verify to the command line
which skipsthe flash verification step. This flag, however, does not verify if the
image is burnt correctly.
Burning an image to a ConnectX®-3 adapter in Flash recovery mode may fail on some
servertypes (that use PCIe spread spectrum). The tool may not be able to recognize the
device’s PCICONF0 or the image burn may not complete successfully.
To burn the device, use the MTUSB-1 connection.
To load the newly burnt firmware image, a driver restart is required for ConnectX-3/
ConnectX-3 Procards.
For fifth generation (Group II) devices, run the mstfwreset tool or reboot the
system.
mstflint: Secure Host
Secure host is the general term for the capability of a device to protect itself and the subnet
frommalicious software through mechanisms such as blocking access of untrusted entities to
thedevice configuration registers.
Using Secure Host
Secure Host feature is supported for all Mellanox network adapters (listed in Group 1 and group2). For
group 1 network adapters, the user is required to generate and burn a firmware image thatsupports
the feature (see “Generating/Burning a Firmware Supporting SecureHost” below).
For Group 2 network adapters, the feature is supported on firmware version 1x.22.1002 or newer.
•
•
WARNING:
Once a hardware access key is set, the hardware can be accessed only after the
correct key is provided.
If a key is lost, please refer to Key Loss Recovery.
•
•
The hardware access in this mode is allowed only if a correct 64 bits key is
provided.
The secure host feature for ConnectX-3/ConnectX-3 Pro HCAs requires a
MLNX_OFED driver installed on the machine.