EasyManuals Logo

Nvidia MSTFLINT User Manual

Nvidia MSTFLINT
129 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #72 background imageLoading...
Page #72 background image
72
2.
3.
1.
2.
3.
4.
5.
6.
Burn the firmware on the device (make sure hardware access is enabled prior to
burning):
# mstflint -d 41:00.0 -i fw-4099.unsecure.bin b
Execute a driver restart in order to load the unsecure firmware:
# service openibd restart
Key Loss Recovery
If a key is lost, there is no way to recover it using the tool. The only way to recover is to:
Connect the flash-not-present jumper on the card.
Reboot the machine.
Re-burn firmware
Remove the flash-not-present jumper.
Reboot the machine
Re-set the hardware access key
mstflint: Secure Firmware Update
A “Secure firmware update” is the ability of a device to verify digital signatures of new firmware
binaries, in order to assure that only officially approved versions can be installed from the host,the
network[1] or a Board Management Controller (BMC).
The firmware of devices with “secure firmware up date” functionality (secure FW), restrictsaccess to
specific commands and registers that can be used to modify the firmware binary imageon the flash, as
well as commands that can jeopardize security in general. Most notably, thecommands and registers
for random flash access are disabled.
Secure FW verifies new binaries before activating them, compared to legacy devices where thistask is
done by the update tool using direct flash access commands. In addition to signatureverification,
secure FW also checks that the binary is designated to the same device model, thatthe new firmware
is also secured, and that the new FW version is not included in a forbiddenversions blacklist. The
firmware rejects binaries that do not match the verification criteria.
Secure FW utilizes the same ‘fail safe’ upgrade procedures, so events like power failure duringupdate
should not leave the device in an unstable state.The table below lists the impact of secure FW update
on mstflint tools.
Tool Flow Secure FW With CS Token Blocked
Command
s
mstfli
nt
Burn FW Working with controlled fw
update
Working with controlled fw
update
Query Working with MCC
commands
Working with MCC
commands
Secure Firmware Update is supported only on ConnectX-4 onwards adapter cards and as of
mstflint v4.10.0-3..

Table of Contents

Other manuals for Nvidia MSTFLINT

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Nvidia MSTFLINT and is the answer not in the manual?

Nvidia MSTFLINT Specifications

General IconGeneral
BrandNvidia
ModelMSTFLINT
CategoryTools
LanguageEnglish