Ultrastar SSD400M OEM Specification


Add to my manuals
326 Pages

advertisement

Ultrastar SSD400M OEM Specification | Manualzz

21.4 Encryption Algorithms

21.4.1 Advanced Encryption Standard (AES) Support

AES encryption is implemented in hardware, with support for ECB or XTS mode for 128 bit or 256 bit keys. A single key is active at any one time within the AES hardware engine. Firmware is responsible for reading the keys from the hardware and also for determining which key is attached to a given LBA range; the hardware can only detect if the LBA has been encrypted or not. The TCG protocol does not allow for a user to choose or switch between AES algorithms, so it is up to the vendor to choose which AES algorithm is used in their implementation. The HGST TCG SSC implementation in firmware supports

AES 256-XTS only.

21.4.2 Level 0 Discovery Vendor Specific Data

This section refers to section 10.2.14 of the TCG Storage Security Subsystem Class document (see the Specifications section of this document). Table 2 of Section 10.2.14 displays a "Vendor Specific" section in bytes 16 to 47. This Vendor Specific section is documented below.

Table 218: Persistent Reserve In (5E)

Byte

16

17

20

21

18

19

22-47

7

RSVD

RSVD

6

MB_s

MB_e

5

Bit

4 3

Version (set to 0)

Vendor Specific State Information

2

0

0

0

Reserved

Diag_s

0

Reserved

Diag_s

Reserved

Dload_s

Dload_e

1

Locking_s

Locking_e

0

FDE_s

FDE_e

FDE_s/FDE_e - Full disk encryption is Supported (equivalent to Media Encryption in Locking Feature Descriptor Enterprise

SSC 10.2.14) / Full disk encryption is Enabled on one or more band.

Locking_s/Locking_e - LBA band locking is supported - locking object exists in the locking SP of the device (equivalent to

Locking Enabled in Locking Feature Descriptor Enterprise SSC 10.2.14) / The locking object for a band has either Read-

Locked or WriteLocked attribute set (equivalent to Locked in Locking Feature Descriptor Enterprise SSC 10.2.14).

Dload_s/Dload_e - support for Admin SP Firmware download port / Firmware download port via Admin SP is locked.

Diag_s/Diag_e - Support for Admin SP vendor specific Diagnostic port / Diagnostics port via Admin SP is locked.

MB_s/MB_e - Multiple encrypting bands supported / Multiple encrypting bands enabled. This bit shall be set to 1 if more than one band exists in addition to the global band and is defined with at least one LBA.

HGST Ultrastar SSD400M (SAS) Solid State Drive Specification

291

advertisement

Was this manual useful for you? Yes No
Thank you for your participation!

* Your assessment is very important for improving the workof artificial intelligence, which forms the content of this project

Related manuals

advertisement

Table of contents