Intel beefs up security in vPro

Latest version of the PC platform includes new virtualisation security and improved AMT capabilities

Written by Daniel Robinson

Intel has officially launched an updated vPro desktop platform for businesses. Previously codenamed Weybridge, the upgrade adds new hardware security features designed to protect against malicious code and enhances the platform’s built-in Active Management Technology (AMT).

Launched last year, the vPro brand combines Core 2 Duo chips, AMT, and Intel’s VT hardware support for virtualisation. Weybridge builds on this, adding Trusted Execution Technology (TXT) and Virtualisation Technology for Directed I/O (VT-d) to provide better isolation for virtual machines.

The updated platform supports these features through three new Core 2 Duo processors, the Q35 Express motherboard chipset and an Intel gigabit Ethernet adaptor chip.

In conjunction with a Trusted Platform Module (TPM) security chip and a supported operating system, TXT enables a PC to be audited at boot-up and compared with a known “good state” to ensure it has not been compromised, Intel said. TXT also provides protection for memory buffers, preventing malicious code snooping on information belonging to other applications.

Intel technical marketing manager David Hollway said TXT combined with VT-d enforces separation of virtual machines, so long as the virtual machine manager (VMM) layer supports these technologies.

“With virtual machines, it becomes important that user-side software cannot interfere with the VMM. If you can subvert the VMM, the [virtual machine] has no way of detecting that,” he said. Intel’s hypervisor, which the firm has licensed to Symantec, supports the technology.

AMT has also been updated in the new platform so that it can be configured down the wire, Hollway said, and this can be back-ported to older vPro systems. “It’s now possible to leave a machine unprovisioned, and push the client across the network. There’s no need to go into the firmware.”

Intel is hoping the updated vPro will enjoy greater success than the first incarnation. Vendors such as Fujitsu Siemens, Lenovo and HP are preparing to ship systems, according to Hollway, and even Dell is now backing it, following Intel’s decision to comply with the Distributed Management Task Force’s Dash interoperability specifications.

However, Neil MacDonald of analyst firm Gartner said that vPro had not been very successful so far because features such as the ability to deploy virtual appliances in a separate service partition were poorly supported.

“When people buy vPro they are getting something capable of supporting these features, but they aren’t included,” he said. This will not be fixed unless Intel can provide a low-cost route to building virtual appliances, but this would probably involve Linux and risk upsetting Microsoft, he added.

Buyers also do not need a vPro system to get some of its more enterprise-friendly features, MacDonald said. The Bitlocker feature in Windows Vista can provide trusted boot-up, for example.

“AMT is also a cool technology, but it existed before vPro. Including it is more of a marketing exercise on Intel’s part,” he added.

See also:

reader comments

related articles

Intel backs SSI blades standard

Initiative to standardise blade server components will cut costs, but the big vendors are staying away 03 Aug 2007

 

Barcelona to boost datacentres

New quad-cores will be more power efficient with greater capacity, says AMD 26 Jul 2007

Intel Centrino Pro arrives

New Centrino Pro laptops expected to ship within weeks 09 May 2007

Red Hat puts virtual desktop on vPro

Red Hat is building a virtual software platform optimised to run on Intel vPro desktop PCs 10 May 2007

Intel details Conroe chips for vPro PCs

Processors to underpin Intel's upcoming vPro coporate desktop platform offer impressive power 14 Jul 2006

Intel unveils Core 2 Duo

Intel announces Core 2 Duo as the official name for its new desktop and laptop processors 09 May 2006

Intel unveils vPro desktop platform

VPro, based on Intel’s Conroe dual-core processor, promises better manageability and security for corporate desktops 25 Apr 2006

Intel lifts the lid on Centrino 2 laptops - update

Delayed mobile platform finally ready to ship 15 Jul 2008

AMD unveils business desktop platform

AMD looks to unseat Intel on the corporate desktop 28 Apr 2008

Intel shows mobile platforms at CES

Intel's latest laptop platform, unveiled at the Consumer Electronics Show, promises easier remote management 07 Jan 2008

latest news

Red Hat a good fit for Qumranet

Open source behemoth opens up Windows opportunities with acquisition of virtualisation specialist 05 Sep 2008

Infor praises partners

Software vendor outlines its channel vision at second annual EMEA partner summit in Marbella 05 Sep 2008

Version One and Accurate launch university push

Software vendors link arms to create integrated document and financial management offering for universities 05 Sep 2008

Most commented stories

poll

Stormy times ahead for PBX?

Stormy times ahead for PBX?

Will the credit crunch affect PBX takeup?

Previous poll results

In The Studio With CRN: Josh Claman, Dell

In an editorial coup for CRN, Josh Claman, vice president of EMEA channels at Dell, talks to CRN TV about the vendor's channel plans

CRN Fight Night bouts are LIVE!

ALL the bouts from CRN's first ever white collar boxing event at The Brewery in Chiswell Street, are now online in their full glory for CRN readers to watch.

events

CRN Golf Challenge 2008

CRN Channel Golf Challenge 2008

CRN's annual golfing day will this year be held on 16 September at a championship course in East Sussex

CRN Reseller Leadership Forum logo

CRN Reseller Leadership Forum

An exclusive channel conference from CRN, to be held over one action-packed day in September 2008

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

White papers

Search white papers

Top categories