What is Dell Trusted Device
Summary: Dell Trusted Device (formerly Dell BIOS Verification) can be used to validate that a BIOS has not been compromised or corrupted.
Instructions
Dell Trusted Device (formerly Dell BIOS Verification) is part of the Dell SafeBIOS product portfolio. The Dell Trusted Device agent includes BIOS Verification, Image Capture, and BIOS Events & Indicators of Attack. BIOS Verification provides customers with affirmation that devices are secured below the operating system, a place where IT administrator visibility is lacking. It enables customers to verify BIOS integrity using an off-host process without interrupting the boot process. After the Dell Trusted Device agent runs on the endpoint, a pass or fail result (0 or 1) displays in some of these locations:
- Web browser
- Command line
- Registry entry
- Event Viewer
- Logs BIOS
Events & Indicators of Attack enables administrators to analyze events in the Windows Event Viewer that may indicate bad actors targeting BIOS on enterprise endpoints. Bad actors change BIOS attributes to gain access to enterprise computers locally or remotely. These attack vectors can be monitored and then mitigated through the BIOS Events & Indicators of Attack features' ability to monitor BIOS attributes.
The earliest version of the agent, Dell BIOS Verification, performed off-host comparisons of the local BIOS to a known-good BIOS from Dell.
Affected Products:
- Dell Trusted Device Agent
- Dell BIOS Verification
- CrowdStrike Falcon
- SecureWorks Managed EDR
- VMware Carbon Black Cloud
- Secureworks Taegis XDR
Affected Versions:
- v1.0 and Later
Affected Platforms:
- Latitude
- OptiPlex
- Precision
- XPS
Affected Operating Systems:
- Windows
The following are common questions that are asked about Dell Trusted Device:
Dell Trusted Device can be downloaded from Support for Trusted Device. For more information, refer to How to Download Dell Trusted Device.
The version of Dell Trusted Device can be identified through the UI, CLI, or the installer. For more information, refer to How to Identify the Dell Trusted Device Version.
Different exclusions must be added depending on the version of Dell Trusted Device. For more information, refer to Anti-virus Exclusions for Dell Trusted Device.
Dell Trusted Device's BIOS verification uses return codes to represent each possible result. For more information, refer to How to Run BIOS Verification Using Dell Trusted Device.
If BIOS image results fail, refer to How to Recover the BIOS on a Dell Computer or Tablet. Refer to BIOS Update Guide for more information about the Dell BIOS.
Dell Data Security signing certificate information is made available along with the version in which each signing certificate is used. For more information, refer to Dell Data Security Signing Certificate Updates.
The log collection process for Dell Trusted Device requires enabling verbosity, reproducing the issue, and then collecting the logs. For more information, refer to How to Collect Dell Trusted Device Logs.
- Information for Dell Trusted Device can be found at Support for Dell Trusted Device.
- Information for Dell BIOS Verification can be found at Support for Dell BIOS Verification.
For phone-based support, refer to Dell Data Security International Support Phone Numbers.
- Microsoft Intune: Dell Trusted Device uses PowerShell scripts and agent-level configuration to communicate endpoint compliance. For more information, refer to the Dell Trusted Device Installation and Administrator Guide at Support for Dell Trusted Device - Manuals and Documents.
- Absolute: Absolute uses a script to inspect Dell Trusted Device installation and components. It then returns a selected subset of data to the Absolute console through Custom Device Fields. For more information, refer to How to Import Dell Trusted Device Results into Absolute Using Custom Device Fields.
- CrowdStrike: CrowdStrike provides verification of the integrity and validity of the BIOS image on Dell hosts by utilizing enhanced telemetry from Dell Trusted Device. For more information, refer to Stomp Out BIOS-Level Threats with Hardware-Assisted Security.
To contact support, refer to Dell Data Security International Support Phone Numbers.
Go to TechDirect to generate a technical support request online.
For additional insights and resources, join the Dell Security Community Forum.