Question 1
A financial services company is deploying a new cluster of HPE ProLiant DL380 Gen10 servers for a high-frequency trading application. A key security requirement is to prevent any unauthorized firmware from ever being loaded, even at boot time. Which foundational HPE security feature, embedded directly into the silicon, ensures the server will not boot with compromised firmware?
Answer and explanation
Correct answer: B
The HPE Silicon Root of Trust creates an immutable, hardware-validated fingerprint in the silicon itself. Before the server is allowed to boot, it checks the UEFI BIOS firmware against this fingerprint. If they do not match, the server will not boot, thus preventing compromised firmware from ever executing. Runtime Firmware Validation checks firmware periodically while the server is running, not at boot. Secure Erase is for data sanitization, and iLO Advanced provides management features, but the foundational boot-time protection is the Silicon Root of Trust.