Unsolved
1 Rookie
•
1 Message
0
10
December 3rd, 2025 11:25
The Update Package security signature cannot be verified.
Hello
I have several PowerEdge R430 servers getting "The Update Package security signature cannot be verified." whilst trying to update disk firmware HGST FJ46 (from FJ45) through Dell OME. I understand some changes were made in the past where SHA1 was no longer valid however we are running iDrac version 2.86.86.86 which this shouldn't happen with.
Is this something that has been seen before or is there a setting I need to enable to allow the system to check for SHA256 hash?
Thanks
No Events found!



DELL-Chris H
Moderator
•
9.6K Posts
0
December 3rd, 2025 15:39
Mlatto,
The error often appears when OME or other tools use older validation logic or when the update package is not properly extracted before upload, so it’s not a setting you can enable; it’s about the update method and ensuring the correct payload is used.
This has started to occur because Dell changed the digital signature algorithm for update packages:
What I would suggest is to do the following to resolve the issue.
Verify iDRAC and Lifecycle Controller Firmware
Use In-Band Update Method
Windows: Run the
.exeupdate package locally.Linux: Use
dsuorrpmpackage.Alternative Out-of-Band Workaround
firmimg.d7).Stepwise Update (if jumping too far)
Let me know if this helps.