A system includes a processor, a memory including a basic input/output system
(BIOS)
in flash memory that includes digital signature verification, and a BIOS update
installation process, and a medium containing a BIOS update file. The BIOS update
file includes a signed data portion having a volume header, signed data and executable
update code to configure the signed data with data in an unsigned data portion,
and a digital signature.