
Intel vPro technology is an umbrella marketing term used by Intel for a large collection of computer hardware technologies, including VT-x, VT-d, Trusted Execution Technology (TXT), and Intel Active Management Technology (AMT).[1] When the vPro brand was launched (circa 2007), it was identified primarily with AMT,[2][3] thus some journalists still consider AMT to be the essence of vPro.[4]
vPro features
Intel vPro is a brand name for a set of PC hardware features. PCs that support vPro have a vPro-enabled processor, a vPro-enabled chipset, and a vPro-enabled BIOS as their main elements.[2][3][5][6][7][8]
A vPro PC includes:
- Multi-core, multi-threaded Xeon or Core processors.[9][10]
- Intel Active Management Technology (AMT), a set of hardware-based features targeted at businesses, allow remote access to the PC for management and security tasks, when an OS is down or PC power is off.[6][11] Note that AMT is not the same as Intel vPro; AMT is only one element of a vPro PC.
- Remote configuration technology for AMT, with certificate-based security. Remote configuration can be performed on "bare-bones" systems, before the Operating System and software management agents are installed.[6][11][12]
- Wired and wireless network connection.[11]
- Intel Trusted Execution Technology (TXT),[11][13][14][15] which verifies a launch environment and establishes the root of trust, which in turn allows software to build a chain of trust for virtualized environments. Intel TXT also protects secrets during power transitions for both orderly and disorderly shutdowns (a traditionally vulnerable period for security credentials).
- Compatibilidad con IEEE 802.1X , Cisco Self Defending Network (SDN) y Microsoft Network Access Protection (NAP) en portátiles, y compatibilidad con 802.1x y Cisco SDN en ordenadores de sobremesa. [ 16 ] [ 17 ] La compatibilidad con estas tecnologías de seguridad permite a Intel vPro almacenar la postura de seguridad de un PC para que la red pueda autenticar el sistema antes de que se carguen el sistema operativo y las aplicaciones, y antes de que se permita el acceso del PC a la red. [ 13 ]
- La tecnología de virtualización de Intel, que incluye Intel VT-x para CPU y memoria, e Intel VT-d para E/S , admite entornos virtualizados (estas características también son compatibles sin vPro [ 18 ] ). Intel VT-x acelera la virtualización de hardware , lo que permite crear regiones de memoria aisladas para ejecutar aplicaciones críticas en máquinas virtuales de hardware con el fin de mejorar la integridad de la aplicación en ejecución y la confidencialidad de los datos sensibles. [ 13 ] [ 19 ] Intel VT-d expone espacios de direcciones de memoria virtual protegidos a los periféricos DMA conectados al equipo a través de buses DMA , mitigando la amenaza que representan los periféricos maliciosos.
- Bit de deshabilitación de ejecución que, cuando es compatible con el sistema operativo, puede ayudar a prevenir algunos tipos de ataques de desbordamiento de búfer. [ 20 ]
La duodécima generación de procesadores Intel Core introdujo cuatro plataformas distintas: vPro Essentials, vPro Enterprise para Windows, vPro Enterprise para Chrome y vPro Evo Design. [ 21 ] La diferencia de vPro Essentials es que no admite algunas características: control remoto KVM fuera de banda, Intel® AMT inalámbrico, llamada rápida de ayuda, Intel® Remote Secure Erase con Intel® SSD Pro. [ 22 ] Los procesadores Intel que admiten vPro Essentials utilizan Intel Standard Manageability (un subconjunto de Intel AMT) [ 23 ] que admite la administración fuera de banda y se puede monitorear con la función "Monitor de acceso". [ 24 ] [ 25 ]
Gestión remota
Intel AMT es el conjunto de funciones de administración y seguridad integradas en los PC vPro que facilitan a un administrador de sistemas la supervisión, el mantenimiento, la seguridad y el servicio de los PC. [ 11 ] A veces se confunde Intel AMT (la tecnología de administración) con Intel vPro (la "plataforma" de PC), porque AMT es una de las tecnologías más visibles de un PC basado en Intel vPro.
Intel AMT incluye:
- Encendido/apagado/reinicio remoto cifrado (a través de wake-on-LAN o WOL) [ 6 ] [ 11 ]
- Arranque remoto/redireccionado (a través de la redirección de la electrónica del dispositivo integrado, o IDE-R) [ 6 ] [ 11 ]
- Redirección de consola (a través de serial sobre LAN o SOL) [ 6 ] [ 11 ]
- Acceso previo al arranque a la configuración del BIOS [ 6 ] [ 11 ]
- Filtrado programable para el tráfico de red entrante y saliente [ 6 ] [ 11 ] [ 13 ]
- Verificación de presencia del agente [ 6 ] [ 11 ] [ 13 ]
- Alerta basada en políticas fuera de banda [ 6 ] [ 11 ]
- Acceso a información del sistema, como el identificador único universal (UUID) del PC, información sobre activos de hardware, registros de eventos persistentes y otra información que se almacena en memoria dedicada (no en el disco duro) donde es accesible incluso si el sistema operativo está inactivo o el PC está apagado. [ 6 ] [ 11 ]
La administración basada en hardware ha estado disponible en el pasado, pero se ha limitado a la autoconfiguración (de computadoras que lo solicitan) usando DHCP o BOOTP para la asignación dinámica de direcciones IP y estaciones de trabajo sin disco, así como wake-on-LAN para encender sistemas de forma remota. [ 26 ]
Control remoto KVM basado en VNC
Starting with vPro with AMT 6.0, PCs with Core i5 or i7 processors and embedded Intel graphics, now contains an Intel proprietary embedded VNC server. Users can connect out-of-band using dedicated VNC-compatible viewer technology, and have full KVM (keyboard, video, mouse) capability throughout the power cycle—including uninterrupted control of the desktop when an operating system loads. Clients such as VNC Viewer Plus from RealVNC also provide additional functionality that might make it easier to perform (and watch) certain Intel AMT operations, such as powering the computer off and on, configuring the BIOS, and mounting a remote image (IDER).
Not all Core i5 and i7 processors with vPro may support KVM capability. This depends on the OEM's BIOS settings as well as if a discrete graphics card is present. Only Intel integrated HD graphics support KVM ability.[27]
Wireless communication
Intel vPro supports encrypted wired and wireless LAN communication for all remote management features for PCs inside the corporate firewall.[11] Intel vPro supports encrypted communication for some remote management features for wired and wireless LAN PCs outside the corporate firewall.[11][28]
vPro laptop wireless communication
Laptops with vPro include a gigabit network connection and support IEEE 802.11a/g/n wireless protocols.[11][28][29]
AMT wireless communication
Intel vPro PCs support wireless communication to the AMT features.[11][29]
For wireless laptops on battery power, communication with AMT features can occur when the system is awake and connected to the corporate network. This communication is available if the OS is down or management agents are missing.[11][28]
AMT out-of-band communication and some AMT features are available for wireless or wired laptops connected to the corporate network over a host OS-based virtual private network (VPN) when laptops are awake and working properly.[11]
A wireless connection operates at two levels: the wireless network interface (WLAN) and the interface driver executing on the platform host. The network interface manages the RF communications connection.
If the user turns off the wireless transmitter/receiver using either a hardware or software switch, Intel AMT cannot use the wireless interface under any conditions until the user turns on the wireless transmitter/receiver.
Intel AMT Release 2.5/2.6 can send and receive management traffic via the WLAN only when the platform is in the S0 power state (the computer is on and running). It does not receive wireless traffic when the host is asleep or off. If the power state permits it, Intel AMT Release 2.5/2.6 can continue to send and receive out-of-band traffic when the platform is in an Sx state, but only via a wired LAN connection, if one exists.
Release 4.0 and later releases support wireless out-of-band manageability in Sx states, depending on the power setting and other configuration parameters.
Release 7.0 supports wireless manageability on desktop platforms.
When a wireless connection is established on a host platform, it is based on a wireless profile that sets up names, passwords and other security elements used to authenticate the platform to the wireless Access Point. The user or the IT organization defines one or more profiles using a tool such as Intel PROSet/Wireless Software. In release 2.5/6, Intel AMT must have a corresponding wireless profile to receive out-of-band traffic over the same wireless link. The network interface API allows defining one or more wireless profiles using the same parameters as the Intel PROSet/Wireless Software. See Wireless Profile Parameters. On power-up of the host, Intel AMT communicates with the wireless LAN driver on the host. When the driver and Intel AMT find matching profiles, the driver routes traffic addressed to the Intel AMT device for manageability processing. With certain limitations, Intel AMT Release 4.0/1 can send and receive out-of-band traffic without an Intel AMT configured wireless profile, as long as the host driver is active and the platform is inside the enterprise.
In release 4.2, and on release 6.0 wireless platforms, the WLAN is enabled by default both before and after configuration. That means that it is possible to configure Intel AMT over the WLAN, as long as the host WLAN driver has an active connection. Intel AMT synchronizes to the active host profile. It assumes that a configuration server configures a wireless profile that Intel AMT uses in power states other than S0.
When there is a problem with the wireless driver and the host is still powered up (in an S0 power state only), Intel AMT can continue to receive out-of-band manageability traffic directly from the wireless network interface.
For Intel AMT to work with a wireless LAN, it must share IP addresses with the host. This requires the presence of a DHCP server to allocate IP addresses and Intel AMT must be configured to use DHCP.
Encrypted communication while roaming
Intel vPro PCs support encrypted communication while roaming.[11][29][30]
vPro PCs version 4.0 or higher support security for mobile communications by establishing a secure tunnel for encrypted AMT communication with the managed service provider when roaming (operating on an open, wired LAN outside the corporate firewall).[11] Secure communication with AMT can be established if the laptop is powered down or the OS is disabled.[11] The AMT encrypted communication tunnel is designed to allow sys-admins to access a laptop or desktop PC at satellite offices where there is no on-site proxy server or management server appliance.
Secure communications outside the corporate firewall depend on adding a new element—a management presence server (Intel calls this a "vPro-enabled gateway")—to the network infrastructure.[11] This requires integration with network switch manufacturers, firewall vendors, and vendors who design management consoles to create infrastructure that supports encrypted roamingcommunication. So although encrypted roaming communication is enabled as a feature in vPro PCs version 4.0 and higher, the feature will not be fully usable until the infrastructure is in place and functional.
vPro security
vPro security technologies and methodologies are designed into the PC's chipset and other system hardware. During deployment of vPro PCs, security credentials, keys, and other critical information are stored in protected memory (not on the hard disk drive), and erased when no longer needed.
Security and privacy concerns
According to Intel, it is possible to disable AMT through the BIOS settings, however, there is apparently no way for most users to detect outside access to their PC via the vPro hardware-based technology.[31] Moreover, Sandy Bridge and future chips will have, "...the ability to remotely kill and restore a lost or stolen PC via 3G ... if that laptop has a 3G connection"[32]
El 1 de mayo de [2017], Intel publicó un aviso de seguridad sobre una vulnerabilidad de firmware en ciertos sistemas que utilizan Intel Active Management Technology (Intel AMT), Intel Standard Manageability (Intel ISM) o Intel Small Business Technology (Intel SBT). Esta vulnerabilidad es potencialmente muy grave y podría permitir que un atacante de red acceda de forma remota a los ordenadores y estaciones de trabajo empresariales que utilizan estas tecnologías. Recomendamos a las personas y empresas que utilizan ordenadores y dispositivos empresariales que incorporan Intel AMT, Intel ISM o Intel SBT que apliquen una actualización de firmware del fabricante de su equipo cuando esté disponible, o que sigan los pasos detallados en la guía de mitigación. [ 33 ] [ 34 ]
Muchas funciones de vPro, incluido AMT, se implementan en el Intel Management Engine (ME), un procesador independiente en el chipset que ejecuta MINIX 3 , el cual ha sido objeto de numerosas vulnerabilidades de seguridad . A diferencia de AMT, generalmente no existe una forma oficial y documentada de deshabilitar el Management Engine (ME); este permanece siempre activo a menos que el fabricante no lo habilite. [ 35 ] [ 36 ]
Características de seguridad
Intel vPro admite metodologías y protocolos estándar de la industria , así como características de seguridad de otros proveedores: [ 6 ] [ 11 ] [ 13 ] [ 37 ]
- Cifrado total de memoria de Intel (Intel TME)
- Tecnología de ejecución confiable de Intel (Intel TXT) [ 11 ] [ 14 ] [ 15 ]
- Módulo de plataforma segura (TPM) estándar de la industria [ 11 ]
- Intel Platform Trust Technology (Intel PTT), un TPM 2.0 fTPM que se introdujo en Skylake [ 38 ].
- Compatibilidad con IEEE 802.1x , Preboot Execution Environment (PXE) y Cisco SDN en PC de escritorio, y adicionalmente Microsoft Network Access Protection (NAP) en portátiles [ 11 ] [ 16 ] [ 17 ]
- Ejecutar bit de deshabilitación [ 11 ]
- Tecnología de virtualización de Intel (Intel VT-x y VT-d) [ 11 ]
- Estructura de control de máquina virtual Intel (VMCS)
- Tecnología de protección de datos de Intel
- Tecnología de protección de identidad de Intel
- Clave segura de Intel ( RDRAND )
- Tecnología antirrobo de Intel
- Intel Boot Guard
- Intel OS Guard
- Intel Active Management Technology (Intel AMT)
- Intel Stable Image Platform Program (SIPP)
- Intel Small Business Advantage (Intel SBA)
Intel Boot Guard
Intel Boot Guard is a processor feature that prevents the computer from running firmware (UEFI) images not released by the system manufacturer (OEM or ODM). When turned on, the processor verifies a digital signature contained in the firmware image before executing it, using the public key of the keypair, the OEM/ODM public key is OTP fused into the system's Platform Controller Hub (PCH)[a] by the system manufacturer (not by Intel). As a result, Intel Boot Guard, when activated, makes it impossible for end users to install replacement firmware (such as Coreboot) or modded BIOS.[40][41]
Intel Boot Guard was first released in Haswell processors in June 2013.
Technologies and methodologies
Intel vPro uses several industry-standard security technologies and methodologies to secure the remote vPro communication channel. These technologies and methodologies also improve security for accessing the PC's critical system data, BIOS settings, Intel AMT management features, and other sensitive features or data; and protect security credentials and other critical information during deployment (setup and configuration of Intel AMT) and vPro use.[11][42]
- Transport layer security (TLS) protocol, including pre-shared key TLS (TLS-PSK) to secure communications over the out-of-band network interface. The TLS implementation uses AES 128-bit encryption and RSA keys with modulus lengths of 2048 bits.[43][44][45]
- HTTP digest authentication protocol as defined in RFC 2617. The management console authenticates IT administrators who manage PCs with Intel AMT.[44]
- Single sign-on to Intel AMT with Microsoft Windowsdomain authentication, based on the Microsoft Active Directory and Kerberos protocols.[11]
- A pseudorandom number generator (PRNG) in the firmware of the AMT PC, which generates high-quality session keys for secure communication.[11]
- Only digitally signed firmware images (signed by Intel) are permitted to load and execute.[11]
- Tamper-resistant and access-controlled storage of critical management data, via a protected, persistent (nonvolatile) data store (a memory area not on the hard drive) in the Intel AMT hardware.[11]
- Access control lists for Intel AMT realms and other management functions.[11]
vPro hardware requirements
The first release of Intel vPro was built with an Intel Core 2 Duo processor.[6] The current versions of Intel vPro are built into systems with 10 nm Intel 10th Generation Core i5 & i7 processors.
PCs with Intel vPro require specific chipsets. Intel vPro releases are usually identified by their AMT version.[6][11]
Laptop PC requirements
Laptops with Intel vPro require:
- For Intel AMT release 9.0 (4th Generation Intel Core i5 and Core i7):
- For Intel AMT release 8.0 (3rd Generation Intel Core i5 and Core i7):
- For Intel AMT release 4.1 (Intel Centrino 2 with vPro technology):[51]
- 45 nm Intel Core2 Duo processor T, P sequence 8400, 8600, 9400, 9500, 9600; small form factor P, L, U sequence 9300 and 9400, and Quad processor Q9100
- Mobile 45 nm Intel GS45, GM47, GM45 and PM45 Express chipsets (Montevina with Intel Anti-Theft Technology) with 1066 FSB, 6 MB L2 cache, ICH10M-enhanced
- For Intel AMT release 4.0 (Intel Centrino 2 with vPro technology):[7][11]
- 45 nm Intel Core2 Duo processor T, P sequence 8400, 8600, 9400, 9500, 9600; small form factor P, L, U sequence 9300 and 9400, and Quad processor Q9100
- Mobile 45 nm Intel GS45, GM47, GM45 and PM45 Express chipsets (Montevina) with 1066 FSB, 6 MB L2 cache, ICH9M-enhanced
- For Intel AMT release 2.5 and 2.6 (Intel Centrino with vPro technology):[6][8][52]
- Intel Core2 Duo processor T, L, and U 7000 sequence3, 45 nm Intel Core2 Duo processor T8000 and T9000
- Mobile Intel 965 (Broadwater-Q) Express chipset with ICH8M-enhanced
Note that AMT release 2.5 for wired/wireless laptops and AMT release 3.0 for desktop PCs are concurrent releases.
Desktop PC requirements
Desktop PCs with vPro (called "Intel Core 2 with vPro technology") require:
- For AMT release 5.0:[53]
- Intel Core2 Duo processor E8600, E8500, and E8400; 45 nm Intel Core2 Quad processor Q9650, Q9550, and Q9400
- Intel Q45 (Eaglelake-Q) Express chipset with ICH10DO
- For AMT release 3.0, 3.1, and 3.2:[6][7][11]
- Intel Core2 Duo processor E6550, E6750, and E6850; 45 nm Intel Core2 Duo processor E8500, E8400, E8300 and E8200; 45 nm Intel Core2 Quad processor Q9550, Q9450 and Q9300
- Intel Q35 (Bearlake-Q) Express chipset with ICH9DO
Note that AMT release 2.5 for wired/wireless laptops and AMT release 3.0 for desktop PCs are concurrent releases.
vPro, AMT, Core i relationships
There are numerous Intel brands. However, the key differences between vPro (an umbrella marketing term), AMT (a technology under the vPro brand), Intel Core i5 and Intel Core i7 (a branding of a package of technologies), and Core i5 and Core i7 (a processor) are as follows:
The Core i7, the first model of the i series was launched in 2008, and the less-powerful i5 and i3 models were introduced in 2009 and 2010, respectively. The microarchitecture of the Core i series was code-named Nehalem, and the second generation of the line was code-named Sandy Bridge.
Intel Centrino 2 was a branding of a package of technologies that included Wi-Fi and, originally, the Intel Core 2 Duo.[5] The Intel Centrino 2 brand was applied to mobile PCs, such as laptops and other small devices. Core 2 and Centrino 2 have evolved to use Intel's latest 45-nm manufacturing processes, have multi-core processing, and are designed for multithreading.
Intel vPro is a brand name for a set of Intel technology features that can be built into the hardware of the laptop or desktop PC.[11] The set of technologies are targeted at businesses, not consumers. A PC with the vPro brand often includes Intel AMT, Intel Virtualization Technology (Intel VT), Intel Trusted Execution Technology (Intel TXT), a gigabit network connection, and so on. There may be a PC with a Core 2 processor, without vPro features built in. However, vPro features require a PC with at least a Core 2 processor. The technologies of current versions of vPro are built into PCs with some versions of Core 2 Duo or Core 2 Quad processors (45 nm), and more recently with some versions of Core i5 and Core i7 processors.
Intel AMT is part of the Intel Management Engine that is built into PCs with the Intel vPro brand. Intel AMT is a set of remote management and security hardware features that let a sys-admin with AMT security privileges access system information and perform specific remote operations on the PC.[6] These operations include remote power up/down (via wake-on-LAN), remote / redirected boot (via integrated device electronics redirect, or IDE-R), console redirection (via serial over LAN), and other remote management and security features.
See also
- Intel Management Engine
- Desktop and mobile Architecture for System Hardware (DASH)
- Active Management Technology (AMT)
- Intel AMT versions
- Trusted Execution Technology (TXT)
- TrustZone
- Trusted Platform Module (TPM)
- Threat model
- Intel Core 2
- Centrino 2
- Centrino
- Intel Viiv
- Intel CIRA (Client-Initiated Remote Access)
Notes
References
- ↑"Intel vPro Technology Reference Guide (Updated for Intel AMT 8)"(PDF). Intel. August 16, 2012. Archived from the original(PDF) on March 20, 2015. Retrieved September 14, 2014.
- 12"Remote Pc Management with Intel's vPro". Tom's Hardware Guide. April 26, 2007. Retrieved November 21, 2007.
- 12"A new dawn for remote management? A first glimpse at Intel's vPro platform". ars technica. February 6, 2007. Retrieved November 7, 2007.
- ↑"Intel vPro: Three Generations Of Remote Management". Tom's Hardware. September 26, 2011.
- 12"Intel Centrino 2 Explained". CNET. Archived from the original on November 5, 2012. Retrieved July 15, 2008.
- 123456789101112131415161718"Architecture Guide: Intel Active Management Technology". Intel. June 26, 2008. Archived from the original on July 22, 2012. Retrieved August 12, 2008.
- 123"Intel vPro Chipset Lures MSPs, System Builders". ChannelWeb. August 27, 2007.
- 123"Intel Mostly Launches Centrino 2 Notebook Platform". ChannelWeb. July 15, 2008.
- ↑admin (March 30, 2015). "Business Client - Overview". software.intel.com.
- ↑S, Ganesh T. "Intel Expands Compute Stick Family with Cherry Trail and Core M Models". www.anandtech.com. Archived from the original on January 12, 2016.
- 123456789101112131415161718192021222324252627282930313233343536373839"Intel Active Management Technology (Intel AMT) Start Here Guide"(PDF). Intel. Retrieved March 18, 2013.
- ↑"Intel Centrino 2 with vPro Technology". Intel. Archived from the original on March 15, 2008. Retrieved June 30, 2008.
- 123456"New Intel vPro Processor Technology Fortifies Security for Business PCs (news release)". Intel. Archived from the original on September 12, 2007. Retrieved August 7, 2007.
- 1 2 "Tecnología de ejecución confiable de Intel" (PDF) . Intel. 2007. Recuperado el 15 de julio de 2008 .
- 1 2 "Tecnología de ejecución confiable de Intel: una introducción" . Intel. 10 de diciembre de 2007. Archivado del original el 24 de septiembre de 2008. Recuperado el 17 de agosto de 2008 .
- 1 2 "Red de software de Intel, foro de ingenieros/desarrolladores" . Intel . Consultado el 9 de agosto de 2008 .
{{cite web}}: CS1 maint: servicio de archivado obsoleto ( enlace ) - 1 2 "Soluciones de seguridad de Cisco con tecnología de procesador Intel Centrino Pro e Intel vPro" (PDF) . Intel. 2007.
- ↑ Procesador sin vPro con soporte para Intel VT: "Procesador Intel® Core™ i7-1165G7" .
- ↑ "Beneficios de Intel Centrino con tecnología vPro en la empresa" (PDF) . Wipro Technologies. 1 de septiembre de 2007. Archivado del original (PDF) el 21 de diciembre de 2008.
- ↑ "Execute Disable Bit and Enterprise Security" . Intel . Consultado el 10 de agosto de 2008 .
- ↑ "La tecnología Intel vPro de 12.ª generación se expande a cuatro plataformas distintas en Windows y Chrome, y la aplicación del flujo de control llega ahora por primera vez a los equipos de escritorio" .
- ↑ "¿Cuáles son las diferencias entre Intel® vPro™ Essentials e Intel® vPro™ Enterprise?" .
- ↑ "Intel amplía el alcance de los procesadores vPro con la línea de 12.ª generación" .
- ↑ "Acerca de Intel AMT > Compatibilidad con otras plataformas Intel" .
- ↑ "Funciones de Intel AMT > Monitor de acceso" .
- ↑ "¿Un nuevo amanecer para la administración remota? Un primer vistazo a la plataforma vPro de Intel" . Ars Technica. 6 de febrero de 2007. Consultado el 26 de julio de 2007 .
- ↑ "Intel® Active Management Technology SDK" .
- 1 2 3 "Comprendiendo Intel AMT por cable vs. inalámbrico (video)" . Intel. Archivado del original el 26 de marzo de 2008. Recuperado el 14 de agosto de 2008 .
- 1 2 3 "Los nuevos portátiles con procesador Intel mejoran todos los aspectos de los ordenadores portátiles" . Intel. Archivado del original el 17 de julio de 2008. Consultado el 15 de julio de 2008 .
- ↑"Intel Active Management Technology Setup and Configuration Service, Version 5.0"(PDF). Intel. Archived from the original(PDF) on September 4, 2008. Retrieved August 4, 2008.(see CIRA configuration discussion)
- ↑Hodgin, Rick C. (September 24, 2008). "Big Brother potentially exists right now in our PCs, compliments of Intel's vPro". TG Daily. Archived from the original on October 27, 2009. Retrieved February 26, 2014.
- ↑Hachman, Mark (September 14, 2010). "Intel's 'Sandy Bridge' Chip to Include vPro Business Features". PC Magazine. quoting Jeff Marek, director of business client engineering for Intel.
- ↑"Intel® AMT Critical Firmware Vulnerability". Intel.
- ↑"Report claims Intel CPUs contain enormous security flaw - ExtremeTech". www.extremetech.com.
- ↑"Positive Technologies Blog: Disabling Intel ME 11 via undocumented mode". Archived from the original on August 28, 2017. Retrieved August 30, 2017.
- ↑"Intel Patches Major Flaws in the Intel Management Engine". Extreme Tech.
- ↑"Intel vPro Technology". Intel. Retrieved July 14, 2008.
- ↑"How To Enable BitLocker With Intel PTT and No TPM For Better Security". Legit Reviews. May 8, 2019. Retrieved September 11, 2020.
- ↑Smith, Ryan (August 11, 2014). "Intel Broadwell Architecture Preview: A Glimpse into Core M". AnandTech. Retrieved February 25, 2015.
{{cite web}}: CS1 maint: deprecated archival service (link) - ↑Hoffman, Chris (February 13, 2015). "How Intel and PC makers prevent you from modifying your laptop's firmware". PC World. Retrieved February 25, 2015.
- ↑Garrett, Matthew (February 16, 2015). "Intel Boot Guard, Coreboot and user freedom". mjg59.dreamwidth.org. Retrieved February 25, 2015.
- ↑"Intel Active Management Technology Setup and Configuration Service Installation and User Manual"(PDF). Intel. Archived from the original(PDF) on August 21, 2010. Retrieved July 14, 2008.
- ↑"Advanced Encryption Standard (AES) Instructions Set". Intel. Archived from the original on September 24, 2008. Retrieved August 5, 2008.
- 12"Hardening Measures Built into Intel Active Management Technology". Intel. December 10, 2007. Archived from the original on March 20, 2008. Retrieved August 1, 2008.
- ↑"Intel vPro Technology FAQ". Intel. Archived from the original on March 15, 2008. Retrieved July 12, 2008.
- ↑"4th Generation Intel Core i7 Processors". Ark.intel.com. Retrieved February 26, 2014.
- ↑"4th Generation Intel Core i5 Processors". Ark.intel.com. Retrieved February 26, 2014.
- 12"ARK | Intel QM87 Chipset (Intel DH82QM87 PCH)". Ark.intel.com. Retrieved February 26, 2014.
- ↑"ARK | Processor Feature Filter". Ark.intel.com. Retrieved February 26, 2014.
- ↑"ARK | Processor Feature Filter". Ark.intel.com. Retrieved February 26, 2014.
- ↑"New Intel Centrino Atom Processor Technology Ushers in 'Best Internet Experience in Your Pocket'". Intel. April 2, 2008. Archived from the original on April 17, 2008. Retrieved August 7, 2008.
- 12"Intel Centrino Pro and Intel vPro Processor Technology"(PDF). Intel. 2007. Retrieved August 7, 2008.
- ↑"Gelsinger Speaks To Intel And High-Tech Industry's Rapid Technology Cadence". Intel. September 18, 2007. Archived from the original on April 17, 2008. Retrieved August 16, 2008.
External links
- Intel ARK
- Intel Business Client Developer's Zone
- Intel AMT SDK 8.1 Reference Guide
- Blog: Intel Manageability Firmware Recovery Agent
- Forum Support: Intel Business Client Software Development Forum
- Resource to help install (activate) vPro systems
- Intel Centrino 2 Explained (CNET)Archived 2012-11-05 at the Wayback Machine
- vPro on Intel.com
- Intel vPro is everything we said it would be
- Intel vPro to Boost Security – Energy Efficiency – Cost Reduction
- Blogcast of the vPro Launch
- "Intel vPro Chipset Lures MSPs, System Builders". ChannelWeb. August 27, 2007. Archived from the original on May 16, 2008.
- Intel(r) vPro(TM) Expert Center
- PRO TOOL WIKIArchived 2007-12-17 at the Wayback Machine
- ROI PODcast
- Intel products