US 12,135,795 B2
Systems and methods for remote secure erasure of fingerprint data from information handling systems
Charles D. Robison, Buford, GA (US); Girish S. Dhoble, Austin, TX (US); and Daniel L. Hamlin, Round Rock, TX (US)
Assigned to Dell Products L.P., Round Rock, TX (US)
Filed by DELL PRODUCTS L.P., Round Rock, TX (US)
Filed on Jan. 21, 2022, as Appl. No. 17/581,642.
Prior Publication US 2023/0237162 A1, Jul. 27, 2023
Int. Cl. G06F 21/60 (2013.01)
CPC G06F 21/60 (2013.01) [G06F 2221/2143 (2013.01)] 22 Claims
OG exemplary drawing
 
1. A method, comprising:
executing a discrete match-on fingerprint reader (MOFR) integrated circuit as a secure subsystem of a local information handling system to:
communicate with a separate fingerprint sensor of the local information handling system that is separate and different from the secure subsystem of the discrete MOFR integrated circuit and that is outside the secure subsystem of the discrete MOFR integrated circuit,
create templates of reference biometric fingerprint credential data within the secure subsystem of the discrete MOFR integrated circuit, and
store the created templates of the reference biometric fingerprint credential data in a non-volatile memory of the secure subsystem of the discrete MOFR integrated circuit, the created reference biometric fingerprint credential data being securely stored in encrypted form in the non-volatile memory of the discrete MOFR integrated circuit in a manner that prevents the reference biometric fingerprint credential data from being accessed from outside the secure subsystem of the discrete MOFR integrated circuit and that keeps the reference biometric fingerprint credential data separate and apart from a host programmable integrated circuit of the local information handling system that is separate from and coupled to the discrete MOFR integrated circuit;
receiving a data payload in the local information handling system, the data payload including first command information;
then executing a basic input/output system (BIOS) on the at least one host programmable integrated circuit of the local information handling system to:
read the information of the first command from the data payload, and
send the information of the first command to the discrete MOFR integrated circuit; and
then executing logic on the discrete MOFR integrated circuit of the local information handling system to respond to receipt of the information of the first command in the discrete MOFR integrated circuit by erasing the existing stored reference biometric fingerprint credential data from a non-volatile memory of the discrete MOFR integrated circuit; and
where the method further comprises receiving currently-sensed user biometric fingerprint data from the separate fingerprint sensor of the local information handling system in the discrete MOFR integrated circuit, and executing logic on the discrete MOFR integrated circuit to:
decrypt and compare the stored reference biometric fingerprint credential data to the received currently-sensed user biometric fingerprint data entirely within the secure subsystem of the discrete MOFR integrated circuit to determine if the currently-sensed user biometric fingerprint data matches the stored reference biometric fingerprint credential data, and
then communicate a data signal to the host programmable integrated circuit of the local information handling system that indicates whether or not the discrete MOFR integrated circuit has determined that a match exists between the stored reference biometric fingerprint credential data and the currently-sensed user biometric fingerprint data.