Seagate ST200FX0002 Cryptographic erase, Authenticated firmware download, Power requirements

Page 45

8.6Cryptographic erase

A significant feature of SEDs is the ability to perform a cryptographic erase. This involves the host telling the drive to change the data encryption key for a particular band. Once changed, the data is no longer recoverable since it was written with one key and will be read using a different key. Since the drive overwrites the old key with the new one, and keeps no history of key changes, the user data can never be recovered. This is tanta- mount to an instantaneous data erase and is very useful if the drive is to be scrapped or redispositioned.

8.7Authenticated firmware download

In addition to providing a locking mechanism to prevent unwanted firmware download attempts, the drive also only accepts download files which have been cryptographically signed by the appropriate Seagate Design Center.

Three conditions must be met before the drive will allow the download operation:

1.The download must be an SED file. A standard (base) drive (non-SED) file will be rejected.

2.The download file must be signed and authenticated.

3.As with a non-SED drive, the download file must pass the acceptance criteria for the drive. For example it must be applicable to the correct drive model, and have compatible revision and customer status.

8.8Power requirements

The standard drive models and the SED drive models have identical hardware, however the security and encryption portion of the drive controller ASIC is enabled and functional in the SED models. This represents a small additional drain on the 5V supply of about 30mA and a commensurate increase of about 150mW in power consumption. There is no additional drain on the 12V supply. See the tables in Section 7.3 for power requirements on the standard (non-SED) drive models.

8.9Supported commands

The SED models support the following two commands in addition to the commands supported by the standard (non-SED) models as listed in Table 14:

SECURITY PROTOCOL OUT (B5h)

SECURITY PROTOCOL IN (A2h)

8.10RevertSP

The SED models will support RevertSP feature where it erases all data in all bands on the device and returns the contents of all SPs (Security Providers) on the device to their Original Factory State.

Pulsar XT.2 SAS Product Manual, Rev. B

37

Image 45
Contents Standard Models Self-Encrypting Drive Models ST400FX0002ST400FX0012 ST200FX0002 ST100FX0002Revision history Contents Defect and error management Physical/electrical specificationsInstallation About self-encrypting drivesPage Pulsar XT.2 SAS Product Manual, Rev. B List of Figures Page Seagate Online Support and Services Seagate Technology support servicesScope Standards Applicable standards and reference documentationElectromagnetic compatibility Electromagnetic susceptibilityElectromagnetic compliance for the European Union Electromagnetic complianceAustralian C-Tick Korean KCCChina Restriction of Hazardous Substances RoHS Directive Reference documentsGeneral description Standard featuresMedia description PerformanceReliability Factory-installed options Formatted capacitiesProgrammable drive capacity Thin Provisioning Drive Configuration Internal drive characteristics Performance characteristicsPerformance characteristics Access timePerformance Format Mode Dcrt Bit IP Bit 400GB 200GB 100GBStart/stop time Cache controlCaching write data Error rates Reliability specificationsEndurance Management Preventive maintenance Reliability and serviceData Retention Lifetime Endurance Management4 S.M.A.R.T Maximum processing delay Fully-enabled delayControlling S.M.A.R.T Performance impactThermal monitor Predictive failuresDrive Self Test DST State of the drive prior to testingDST failure definition ImplementationShort test Function Code 001b Short and extended testsExtended test Function Code 010b Log page entriesShipping Product warrantyProduct repair and return information StoragePhysical/electrical specifications Power specificationsAC power requirements 400GB standard model DC power requirements DC power requirements200GB standard model DC power requirements 100GB standard model DC power requirements Power sequencing General DC power requirement notesConducted noise immunity Current profilesCurrent profiles for 200GB models Power dissipation 400GB models in 6Gb operation200GB models in 6Gb operation Temperature a. Operating Environmental limits100GB models in 6Gb operation Relative humidity Effective altitude sea level a. OperatingShock and vibration Recommended mounting ShockAir cleanliness Vibration a. Operating-normalCorrosive environment Mounting configuration dimensions 400GB models Mechanical specificationsWeight Pounds 100 grams Admin SP Controlled accessAbout self-encrypting drives Data encryptionRandom number generator RNG Default passwordDrive locking Data bandsPower requirements Authenticated firmware downloadSupported commands Cryptographic eraseDefect and error management Drive internal defects/errorsSSD Physical format address descriptor Bit Byte SAS system errors Drive error recovery proceduresBackground Media Scan Auto-ReallocationProtection Information PI Setting and determining the current Type LevelLevels of PI Identifying a Protection Information driveDrive orientation InstallationAir flow CoolingGrounding Drive mountingInterface requirements SAS featuresDual port support Supported commands Scsi commands supportedPersistent Reserve Read Capacity Write Inquiry data Mode Sense dataPage 14 1a 00 1a Mode Sense data for 400GB drivesMode Pages Mode Sense data for 200GB drivesMode Sense values for 100GB drives Miscellaneous features Miscellaneous operating features and conditionsMiscellaneous status SAS physical interfaceDatum B Section C C Section a a Connector requirements Physical characteristicsElectrical description Pin descriptionsPower Signal characteristicsSAS transmitters and receivers Ready LED OutLED drive signal SAS-2 Specification complianceDifferential signals General interface characteristicsNumerics IndexPage RNG See also cooling Page Americas Seagate Technology LLC