4 Replies Latest reply on Sep 12, 2017 10:02 AM by Intel Corporation

    Re-provisioning after addressing INTEL-SA-00075

    HeathRamos

      I followed the instructions on addressing INTEL-SA-00075 by using the console to unprovision the Intel manageability and updating the firmware.

       

      The next step says to re-provision Intel manageability but doesn't say how.

       

      Any ideas?

       

      Heath

       

      The procedural steps for implementing the mitigation are as follows:

      1. Unprovision the Intel manageability SKU system. This is necessary to mitigate the network privilege escalation vulnerability and remove any configuration changes an unprivileged attacker could have made prior to mitigation.

      2. Update the impacted systems with firmware obtained from your OEM that addresses this issue.

      3. Re-provision Intel manageability SKU with your existing manageability / configuration console.

      INTEL-SA-00075 Firmware Deployment Procedure Guidance

      Intel® Active Management Technology (Intel® AMT), Intel® Standard Manageability (ISM), and Intel® Small Business Technology (SBT).

      Firmware deployment procedure guidance for security vulnerability documented in INTEL-SA-00075

      Revision 1.0 – May 11, 2017

      Table of Contents

      Executive Summary ................................. 1

      Step 1: Unprovisioning Systems ........... 2

      Step 2: Update Firmware ........................ 2

      Step 3: Reprovision Systems ................. 2