=============================================================================== Intel(R) Server Platform Integrated BMC Firmware Release Notes =============================================================================== INTEL(R) Server Boards and Systems Intel Corporation 2111 N.E. 25th Avenue, Hillsboro, OR 97124 USA =============================================================================== DATE: 29 April 2021 TO: Intel(R) Server Board M50CYP/D50TNP SUBJECT: Integrated BMC(R) firmware 2.81 release notes =============================================================================== LEGAL INFORMATION =============================================================================== Information in this document is provided in connection with Intel products. No license, express or implied, by estoppel or otherwise, to any intellectual property rights is granted by this document. Except as provided in Intel's Terms and Conditions of Sale for such products, Intel assumes no liability whatsoever, and Intel disclaims any express or implied warranty, relating to sale and/or use of Intel products including liability or warranties relating to fitness for a particular purpose, merchantability, or infringement of any patent, copyright or other intellectual property right. Intel Corporation may have patents or pending patent applications, trademarks, copyrights, or other intellectual property rights that relate to the presented subject matter. The furnishing of documents and other materials and information does not provide any license, express or implied, by estoppel or otherwise, to any such patents, trademarks, copyrights, or other intellectual property rights. Intel products are not intended for use in medical, life saving, or life sustaining applications. Intel may make changes to specifications and product descriptions at any time, without notice. Intel is a registered trademark of Intel Corporation. *Other names and brands are the property of their respective owners. Copyright (c) 2021 Intel Corporation. A portion of this firmware is open source code. The OSS source code that the customer is entitled to per OSS license has been posted on the Intel support website at the following link: http://downloadcenter.intel.com/Detail_Desc.aspx?agr=Y&DwnldID=21081 This open source code falls under the GPL 2.0 license, please see the license at the following link: http://www.opensource.org/licenses/gpl-2.0.php =============================================================================== ABOUT THIS RELEASE PACKAGE =============================================================================== M50CYP Source file: CoyotePass-bmc_prod_signed_cap_2.81_99b20e11.bin D50TNP Source file: TennesseePass-bmc_prod_signed_cap_2.81_99b20e11.bin Built from git revision: 99b20e11859deb465e01b87d4f6474aeb3554a2e REVISION INFORMATION RETURNED BY GET DEVICE ID COMMAND: Operational mode: 2.81.99b20e11 Device ID: 0x98 Manufacturer ID: 0x000157 SHA1 checksum: CoyotePass-bmc_prod_signed_cap_2.81_99b20e11.bin: 236da6aec649dcfad778458ed8ac25c2a1301b20 TennesseePass-bmc_prod_signed_cap_2.81_99b20e11.bin: 8a2d63d10bee46241d3008729fe2d2077f1d4090 JAVA Certificate: from: Web OCT 14 07:52:41 CST 2020 UTC/GMT+08:00 until: Fri Jun 18 07:59:59 CST 2021 UTC/GMT+08:00 Embeds firmware files for the following components: Power Supplies 1100ADU00201 00: 54.1.1 1100ADU00201 01: 54.1.1 1100ADU00201 02: 54.1.1 1100ADU00201 03: 54.1.1 1100ADU00201 04: 54.1.1 1100ADU00201 05: 54.1.1 1100ADU00201 S3: 54.1.1 DPS-1200TB A 00: 77.39.4 DPS-1200TB A 02: 89.40.6 DPS-750AB32A S0: 33.3.3 DPS-750XB A S4: 100.39.5 DPS-900AB-5 E 00: 13.13.0 DPS-900AB-5 E S3: 12.12.0 PSSF132202A 00: 23.5.0 PSSF132202A 01: 23.5.0 PSSF132202A 03: 25.5.0 PSSF132202A S3: 23.5.0 PSSF162202A 00: 75.9.0 PSSF162202A 01: 75.9.0 PSSF162202A 02: 75.9.0 PSSF162202A 03: 75.9.0 PSSF162202A 04: 75.9.0 PSSF162202A 05: 78.9.0 PSSF162202A 06: 78.9.0 PSSF162202A 07: 78.9.0 PSSF162202A 08: 78.9.0 PSSF162202A 09: 78.9.0 PSSF162202A 11: 78.9.0 PSSF162202A 11: 78.9.0 PSSF162205A 00: 18.4.0 PSSF162205A 01: 18.4.0 PSSF162205A 02: 18.4.0 PSSF212201A 00: 12.3.0 PSSF212201A 01: 14.3.0 PSSF212201A S3: 12.3.0 PSSF222201A S4: 33.0.0 Hot Swap Backplane V1 HSBP: 1.33 V2 HSBP: 2.08 Whitley EDSFF: v1p6 Whitley HSBP: v1p90 Astera retimer FW 1.2.0 BMC PFR SVN: 1 Firmware Update Tools: Sysfwupdt_V14_2_Build11_AllOS.zip * NOTE The PSSF222201A 00A or newer identifies itself as a PSSF222201A S4 internally. Please use that firmware version when referencing that PSU. ------------------------------------------------------------------------------- =============================================================================== IMPORTANT INSTALLATION NOTES =============================================================================== The following update process must be followed to ensure a trouble free updating of your baseboard. The order is important to minimize any issues for status checking as different components are initialized. 1. BMC firmware 2. BIOS/Manageability Engine (ME) firmware (as directed in BIOS Release Notes) 3. FRU/SDR package specific to the baseboard. 4. NIC EEPROM =============================================================================== INSTALLATION PROCEDURE =============================================================================== There are two supported ways to update the BMC firmware. You may opt to use the Web UI or the legacy UEFI method. Web GUI update 1. Unzip the package onto your system 2. Log into the BMC web UI 3. Navigate to Configuration, then Firmware Update 4. Click browse, and direct the browser to the location of CoyotePass-bmc_prod_signed_cap_2.81_99b20e11.bin or TennesseePass-bmc_prod_signed_cap_2.81_99b20e11.bin 5. Click upload. Progress and status will be shown as the update progresses UEFI update 1. Unzip package and load onto a flash drive 2. Boot to UEFI shell, and navigate to the folder where this package lives 3. Run cypFwUpdateBMC.nsh or tnpFwUpdateBMC.nsh and follow prompts =============================================================================== FIRMWARE UPGRADE/DOWNGRADE PROCEDURES =============================================================================== Upgrade of BMC FW from version 2.81 to later versions will be documented in the release notes for those versions. Reverting to a lower version of firmware may have unexpected side effects, including but not limited to user settings reset to defaults, and will always result in the loss of functionality which was present in the higher version but was not implemented in the lower version. We do not guarantee that any downgrade will operate without side-effects. Always observe caution when downgrading firmware. =============================================================================== KNOWN ISSUES/WORKAROUNDS/REQUIREMENTS =============================================================================== WARNING: If there is a retimer update process shown on the screen, the whole process will cost about 15 minutes to 20 minutes. Please do not interrupt. WARNING: This release disables RMCP authentication by default. ipmitool uses RMCP by default, so it will fail to authenticate. Add the '-I lanplus' parameter to all ipmitool commands to use RMCP+ instead. WARNING: This release disables the BMC PCIe bridge. This will cause a majority of operating systems to fail to boot as they stall during video driver init. More information can be found in the defect below: 1209995146 - Host OS fails to boot when AST2500 P2A bridge is disabled. WARNING: When using IPMI to establish a SOL session using KONSOLE: A. The "Delete" input cannot be captured when pressing "Backspace" Workaround: Modify the "Backspace" key to "0x08" in the KONSOLE profile keyboard settings B. Resizing a KONSOLE window with an active SOL session can cause the content to overlap Workaround: None. Recommend using the Java SOL Viewer instead of KONSOLE Steps to recover a failing OS: Linux variants (one of the below): A. Ensure that the nomodeset parameter is set in your boot loader (grub) config. B. Ensure that you are using a kernel version of 4.10 or above Windows variants: Boot to safe mode, and load aspeed video driver v1.03 or greater and reboot Redfish API: Redfish API POST requests using a browser extension or plugin will fail if the extension manipulates the HTTP(S) Origin header. This affects REST clients which are implemented as browser (chrome, Firefox) plugins or extensions such as the older versions of Postman. It is recommended to use Postman version 6.0 or later. For security purposes, the BMC Redfish API requires that if a HTTP Origin header is present, the host portion of the Origin header must match the HTTP Host header. Some browser based REST clients alter the Origin header preventing their use with the BMC. WARNING: Start from BMC v1.89, by default BMC only enables cipher suite 17, to use that, you must add "-C 17" in ipmitool command. WARNING: Start from BMC v2.21, When KCS control mode is put in restricted and deny all mode, BMC EWS CPU and DIMM page displays blank or last DC on configuration information. WARNING: IPMIUtil can not support user password length larger than 16 bytes. WARNING: When KCS policy control mode is configured as "Deny All", BMC and FRUSDR cannot be upgraded/downgraded as expected behavior. =============================================================================== MISC =============================================================================== Vers BMC Version Changes… v2.79 2.79 Web SSL Certificate security issue & ASMK help information & InBand update support. v2.80 2.80 Update libs & Fix Can't upload SSL cert through EWS. v2.81 2.81 Resolve in-band update issues & update Retimer to v1.2.0 & update HSBP CPLD version: v1.90. =============================================================================== CHANGES =============================================================================== v2.81 - Update kernel to 4.9.268 - [Utilities] [SDPTool-2.1-0][Redfish] CPLD version showing incorrect - Fixed the problem that the server was not started for the second time during the BIOS in-band recovery update (need the new version of CPLD) Fixed the beep code and abnormal SEL problems that occurred on the server during the BIOS in-band update warm reset - EWS does not decode CPU ID correctly, there are additional “f” characters contained in process signature. - Move "LicenseStatus" & "LastUpdateTime" to pre-defined schema - Update HSBP CPLD to v1.90 - 3.5 in SIlver SKU HSPB IPMI returns incorrect LED status - Update retimer to 1.2.0 - Upgrade glib to 2.68.1 - Update curl to 7.76.1 - Fix Can't upload SSL cert through EWS, warning message will pop up. - Update kernel to 4.9.265 - Upgrade jQuery-ui to v1.12.1 - Update glib to 2.68.0 - Update openssl to 1.1.1k - Update mbedtls and monit - Update openldap to 2.4.58 - Update libcurl to 7.76 - Add busybox patch. - Help info of ASMK is not completed on EWS. - Fix WebSocket session timeout problem - After OOB flash corrupted BIOS and reboot SEL log behavior is changed on BMC 2.78. - Fix the caution message incorrect when upload invalid and expired SSL certificates in EWS. - Temperature,RSSD Thrm Mrgn 2 (#0x62)" SEL event reported during DC cycle on TNP Storage Module [Storage][Pre-ST]BMC report "RSSD Thrm Mrgn 1,Temperature, Lower Critical - going low - Asserted/NVMEof-FIO about 1 day" - Fix incorrect values in System NIC info and cannot access Drive. - Correct the help info of Date & Time to align with User guide. - [InBand-update]SUT will have beep code after flash BIOS and reset. - [InBand-update]"VR Watchdog" and "Power Unit Failure detected" error event show in SEL after flash BIOS via Sysfwupdt_V14_2_Build9. - SDR Report present empty (invalid) contain in System Debug log. (regression issue) - Fix Advanced System Management Key” function link is disappear randomly after login/logout EWS multiple times. - Fix cannot upload 4096 bits SSL cert via Redfish. - Correct the EWS certificate time. - Mount folder remotely via Virtual Media over HTML5 of EWS is not work. - [klocwork] Fix klocwork issue: 56489 - Fix mount folder can not work of VM HTML5 at EWS issue. - Restrict the private key length to RSA 2048-bit and verify the cert prior to replacing it. - Fix SSL Certification file can not upload at EWS issue. - Correct the interpreting when SMBIOS type 190 offset 0x17 value is FFh - Fix Advanced Boot Options of BIOS Configurations can not loading via firefox/IE. - Fix OEM SEL record type range 0xE0-0xFF overwriting non-timestamped data. - Update HSBP version number in release note - Correct the warning message when adding a user. - Help info of ASMK is not completed on EWS as user guide. - Check whether username contains the password prior to adding a username. - Update JAVA Certificate