
iDRAC10 Security Configuration Guide
Security Protocol and Data Model
The Integrated Dell Remote Controller (iDRAC) uses Security Protocol and Data Model (SPDM) to ensure that the components in the server assembly are genuine and from trusted device manufacturers.
SPDM from Distributed Management Task Force (DMTF), supports hardware identity verification to verify if the component is from a genuine manufacturer, and that the component is not tampered within the supply chain. iDRAC creates an inventory of devices and identifies if the devices are SPDM compatible or not. iDRAC provides details about the device SPDM capabilities in Redfish, RACADM, and GUI.
iDRAC verifies whether the device is genuine and if the validation fails, iDRAC logs an LC log message. For components that support SPDM, the device identity used in Secure Component Verification (SCV) is enhanced by using SPDM certificates.