Seagate ST35000415SS Cryptographic erase, Authenticated firmware download, Power requirements

Page 51

7.6Cryptographic erase

A significant feature of SEDs is the ability to perform a cryptographic erase. This involves the host telling the drive to change the data encryption key for a particular band. Once changed, the data is no longer recoverable since it was written with one key and will be read using a different key. Since the drive overwrites the old key with the new one, and keeps no history of key changes, the user data can never be recovered. This is tanta- mount to an instantaneous data erase and is very useful if the drive is to be scrapped or redispositioned.

7.7Authenticated firmware download

In addition to providing a locking mechanism to prevent unwanted firmware download attempts, the drive also only accepts download files which have been cryptographically signed by the appropriate Seagate Design Center.

Three conditions must be met before the drive will allow the download operation:

1.The download must be an SED file. A standard (base) drive (non-SED) file will be rejected.

2.The download file must be signed and authenticated.

3.As with a non-SED drive, the download file must pass the acceptance criteria for the drive. For example it must be applicable to the correct drive model, and have compatible revision and customer status.

7.8Power requirements

The standard drive models and the SED drive models have identical hardware, however the security and encryption portion of the drive controller ASIC is enabled and functional in the SED models. This represents a small additional drain on the 5V supply of about 30mA and a commensurate increase of about 150mW in power consumption. There is no additional drain on the 12V supply. See the tables in Section 6.3 for power requirements on the standard (non-SED) drive models.

7.9Supported commands

The SED models support the following two commands in addition to the commands supported by the standard (non-SED) models as listed in Table 8:

Security Protocol Out (B5h)

Security Protocol In (A2h)

ConstellationES Series SAS Product Manual, Rev. D

43

Image 51
Contents Self-Encrypting Drive Models ST32000444SS ST31000424SS ST3500414SSST32000445SS ST31000425SS ST3500415SS Standard ModelsRevision history Contents Interface requirements Defect and error managementInstallation About self-encrypting drivesSeagate Technology support services ConstellationES Series SAS Product Manual, Rev. D ST32000444SS & ST32000445SS model current profiles List of FiguresConstellationES Series SAS Product Manual, Rev. D Scope Electromagnetic susceptibility Applicable standards and reference documentationStandards Electromagnetic compatibilityKorean KCC Electromagnetic complianceElectromagnetic compliance for the European Union Australian C-TickEuropean Union Restriction of Hazardous Substances RoHS Reference documentsGeneral description Media description Standard featuresProgrammable drive capacity PerformanceReliability Formatted capacitiesFactory-installed options Access time Performance characteristicsInternal drive characteristics Seek performance characteristicsStart/stop time General performance characteristicsCache operation Prefetch/multi-segmented cache controlPrefetch operation Caching write dataUnrecoverable Errors Reliability specificationsError rates Recoverable ErrorsPreventive maintenance Reliability and serviceSeek errors Interface errorsReporting control 4 S.M.A.R.TControlling S.M.A.R.T Performance impactTemperature Log Page 0Dh Parameter Code Description Predictive failuresThermal monitor Implementation State of the drive prior to testingDrive Self Test DST DST failure definitionLog page entries Short and extended testsShort test Function Code 001b Extended test Function Code 010bProduct warranty ShippingProduct repair and return information Physical/electrical specifications PowerChoiceTM power managementPowerChoice modes DC power requirements AC power requirementsConstellationES Series SAS Product Manual, Rev. D ConstellationES Series SAS Product Manual, Rev. D Page General DC power requirement notes Power sequencingConducted noise immunity ST32000444SS & ST32000445SS model current profiles Current profilesST31000424SS & ST31000425SS model current profiles ST3500414SS & ST3500415SS model current profiles ST32000444SS and ST32000445SS in 3Gb operation Power dissipationST32000444SS and ST32000445SS in 6Gb operation ST31000424SS and ST31000425SS in 3Gb operation ST31000424SS and ST31000425SS in 6Gb operation ST3500414SS CURRENT/POWER vs Throughput SAS 3.0GB ST3500414SS and ST3500415SS in 3Gb operationOs per Second ST3500414SS and ST3500415SS in 6Gb operation Temperature a. Operating Environmental limitsRelative humidity Effective altitude sea level a. Operating Shock and vibrationShock Recommended mounting Corrosive environment Air cleanlinessVibration a. Operating-normal AcousticsElectromagnetic susceptibility Mounting configuration dimensions Mechanical specificationsData encryption Controlled accessAdmin SP About self-encrypting drivesData bands Default passwordRandom number generator RNG Drive lockingCryptographic erase Authenticated firmware downloadPower requirements Supported commandsDefect and error management Drive internal defects/errorsDrive error recovery procedures SAS system errors Background Media Scan Media Pre-ScanDeferred Auto-Reallocation Idle Read After Write Drive orientation InstallationAir flow CoolingGrounding Drive mountingInterface requirements SAS featuresDual port support Supported commands Scsi commands supportedSupported commands Supported commands Supported commands Mode Sense data Inquiry dataConstellation ES inquiry data Page Mode Data Header 74 70 6d b0 00 00 02 3a 38 60 30 00 00 02 Miscellaneous operating features and conditions Miscellaneous featuresMiscellaneous status SAS physical interface Datum B Section C C Section a a Pin descriptions Physical characteristicsConnector requirements Electrical descriptionReady LED Out Signal characteristicsPower SAS transmitters and receiversGeneral interface characteristics SAS-2 Specification ComplianceLED drive signal Differential signalsPresales Support Seagate Technology support servicesWarranty Support Direct.seagate.com Spp.seagate.com WebPresales Support Technical Support Warranty ServiceData Recovery Services Authorized Service Centers Data Recovery Services Call Center Toll-free Direct dialNumerics IndexKCC Msid Mtbf See also cooling Page ConstellationES Series SAS Product Manual, Rev. D Page Seagate Technology LLC