How to enable for vPro/AMT computers mutual authentication using certificates.
In May 2017 Intel publicly confirmed the vulnerability in own firmware for vPro/AMT.
To download and patch such computers from Dell use links inside the PDF file from following link.
But as i mentioned in my linkedin post it’s possible to protect even noname computers (without updated BIOS) with compromised ME firmware — implementing SSL/TLS certificates for mutual authentication. In this post i will show how it can be done.
At first let’s consider that
- you know that your computer supports vPro/AMT, ME version, you know AMT type (ISM or full AMT and so on)
- you already use intel