Skip to main content

Remove the firmware and RoT security module

Follow instructions in this section to remove the Firmware and Root of Trust Security Module (firmware and RoT security module).

About this task

S002
disconnect all power
CAUTION
The power-control button on the device and the power switch on the power supply do not turn off the electrical current supplied to the device. The device also might have more than one power cord. To remove all electrical current from the device, ensure that all power cords are disconnected from the power source.
Important

This task must be operated by trained technicians that are certified by Lenovo Service. Do no attempt to remove or install the part without proper training and qualification.

Attention
  • Read Installation Guidelines and Safety inspection checklist to ensure that you work safely.

  • If applicable, remove the security bezel. See Remove the security bezel.

  • Power off the server and peripheral devices and disconnect the power cords and all external cables. See Power off the server.

  • If the server is installed in a rack, remove the server from the rack. See Remove the server from the rack.

  • Prevent exposure to static electricity, which might lead to system halt and loss of data, by keeping static-sensitive components in their static-protective packages until installation, and handling these devices with an electrostatic-discharge wrist strap or other grounding system.

  • Touch the static-protective package that contains the component to any unpainted metal surface on the server; then, remove it from the package and place it on a static-protective surface.

  • After replacing the firmware and RoT security module, update the firmware to the specific version supported by the server. Make sure that you have the required firmware or a copy of the pre-existing firmware before you proceed.

Procedure

  1. Make preparation for this task.
    1. Perform OneCLI commands to back up the UEFI settings. See OneCLI commands that save configuration settings.
    2. Perform both OneCLI commands and XCC actions to back up the XCC settings. See OneCLI commands that save configuration settings and Using XCC to back up the BMC configuration.
    3. Remove the top cover. See Remove the top cover.
    4. Remove all the PCIe assemblies. If the configuration comes with PCIe riser 2 and internal drives, remove all the internal drives, and lift the internal drive backplane before removing PCIe riser 2. See Remove the PCIe riser assembly.
  2. Remove the firmware and RoT security module.
    Figure 1. Firmware and RoT security module removal

    1. Loosen the two screws on the firmware and RoT security module.
    2. Lift the firmware and RoT security module out of the chassis.

After this task is completed

  1. Install a replacement unit. See Install the firmware and RoT security module.

  2. If you are instructed to return the component or optional device, follow all packaging instructions, and use any packaging materials for shipping that are supplied to you.

Demo Video

Watch the procedure on YouTube