Changes and New Features

Feature/Change

Description

28.33.4030

Firmware Based Attestation Flow

Attestation is a cryptographic reporting of the security configuration of a device, used by a platform to establish trust in the device. The device’s security configuration includes (but is not limited to) its identity, the code it is running and the states of security related mechanisms and assets.

This new capability enables BMC to attest the device over SPDM protocol. The feature works for secure NICs with production certificates installed. SPDM protocol is defined in DMTF DSP0274 v1.1.0.

Currently the following SPDM commands are supported:

  • GET_VERSION

  • GET_CAPABILITIES

  • NEGOTIATE_ALGORITHMS

  • GET_DIGESTS

  • GET_CERTIFICATE

Since CHALLENGE and GET_MEASUREMENTS are not functional yet, when they are called, the NIC will respond with RESPONSE_NOT_READY.

Cables

Added support for 100G & 200G optical cables (InfiniBand & Ethernet).

Please note this support comes with a limitation when connecting ConnectX-7 to a ConnectX-6 Dx or an NVIDIA Spectrum-3 as described in Known Issues 3070409.

Bug Fixes

SeeBug Fixes in this Firmware Version section.

© Copyright 2023, NVIDIA. Last updated on Oct 18, 2023.