Updating The Device Firmware Automatically Upon System Boot; Uefi Secure Boot; Enrolling Mellanox's X.509 Public Key On Your Systems - Mellanox Technologies ConnectX-5 User Manual

Ex 100gb/s vpi single and dual adapter cards
Hide thumbs Also See for ConnectX-5:
Table of Contents

Advertisement

Burn the firmware.
Step 3.
Reboot your machine after the firmware burning is completed.
Step 4.

4.1.6.3 Updating the Device Firmware Automatically upon System Boot

As of MLNX_OFED v3.1-x.x.x, firmware can be automatically updated upon system boot.
The firmware update package (
folder, and openibd service script can invoke the firmware update process if requested
updater"
on boot.
If the firmware is updated, the following message is printed to the system's standard logging file:
fw_updater: Firmware was updated. Please reboot your system for the changes to take
effect.
Otherwise, the following message is printed:
fw_updater: Didn't detect new devices with old firmware.
Please note, this feature is disabled by default. To enable the automatic firmware update upon
system boot, set the following parameter to
openibd service configuration file
You can opt to exclude a list of devices from the automatic firmware update procedure. To do so,
edit the configurations file
provide a comma separated list of PCI devices to exclude from the firmware update.
Example:
MLNX_EXCLUDE_DEVICES="00:05.0,00:07.0"

4.1.7 UEFI Secure Boot

All kernel modules included in MLNX_OFED for RHEL7 and SLES12 are signed with x.509
key to support loading the modules when Secure Boot is enabled.

4.1.7.1 Enrolling Mellanox's x.509 Public Key On your Systems

In order to support loading MLNX_OFED drivers when an OS supporting Secure Boot boots on
a UEFI-based system with Secure Boot enabled, the Mellanox x.509 public key should be added
to the UEFI Secure Boot key database and loaded onto the system key ring by the kernel.
Follow these steps below to add the Mellanox's x.509 public key to your system:
Prior to adding the Mellanox's x.509 public key to your system, please make sure:
Download the x.509 public key.
Step 1.
Add the public key to the MOK list using the mokutil utility.
Step 2.
Rev 1.5
mlxfwmanager_pci -i <fw_file.bin>
mlnx-fw-updater
"/etc/infiniband/openib.conf"
"/opt/mellanox/mlnx-fw-updater/mlnx-fw-updater.conf"
The 'mokutil' package is installed on your system
The system is booted in UEFI mode
# wget http://www.mellanox.com/downloads/ofed/mlnx_signing_key_pub.der
Mellanox Technologies
) is installed in the
"/opt/mellanox/mlnx-fw-
"yes" "RUN_FW_UPDATER_ONBOOT=yes"
.
Driver Installation
in the
and
35

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Mcx556a-ecatMcx555a-ecatMcx556a-edat

Table of Contents