Patent attributes
Technologies are described for performing firmware attestation on system reset. When a managed computing system is reset, a baseboard management controller (“BMC”) generates a notification that the managed computing system has been reset and transmits the notification to an event listener executing in a management system by way of an out-of-band (“OOB”) network. The event listener receives the notification that the managed computing system has been reset and, in turn, causes a security manager executing in the management system to transmit a request for firmware attestation data to a platform security agent executing on the managed computing system. The security manager receives the firmware attestation data from the platform security agent by way of an in-band network and stores the firmware attestation data in a database for exposure to other program components for use in evaluating the trustworthiness of the firmware executing on the managed computing system.