Constellation ES.2 SAS Product Manual
Page 4
... 7.5.7 Corrosive environment 31 7.5.8 Electromagnetic susceptibility 32 7.6 Mechanical specifications 33 8.0 About FIPS 34 9.0 About self-encrypting drives 35 9.1 Data encryption 35 9.2 Controlled access 35 9.2.1 Admin SP 35 9.2.2 Locking SP 35 9.2.3 Default password 36 9.3 Random number generator (RNG 36 9.4 Drive locking 36 9.5 Data bands 36 9.6 Cryptographic erase 36 9.7 Authenticated firmware download 37 9.8 Power requirements...
... 7.5.7 Corrosive environment 31 7.5.8 Electromagnetic susceptibility 32 7.6 Mechanical specifications 33 8.0 About FIPS 34 9.0 About self-encrypting drives 35 9.1 Data encryption 35 9.2 Controlled access 35 9.2.1 Admin SP 35 9.2.2 Locking SP 35 9.2.3 Default password 36 9.3 Random number generator (RNG 36 9.4 Drive locking 36 9.5 Data bands 36 9.6 Cryptographic erase 36 9.7 Authenticated firmware download 37 9.8 Power requirements...
Constellation ES.2 SAS Product Manual
Page 43
... /write access to the media and the cryptographic erase feature. Access to the Admin SP is the number of the data band (0 through 15). These drives are always in volatile temporary storage (DRAM) external to the encryption engine. Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as...
... /write access to the media and the cryptographic erase feature. Access to the Admin SP is the number of the data band (0 through 15). These drives are always in volatile temporary storage (DRAM) external to the encryption engine. Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as...
Constellation ES.2 SAS Product Manual
Page 44
... removed from its own user-supplied password. Data bands cannot overlap but before these numbers as Authentication Keys (passwords) for the drive's Admin and Locking SPs. 9.4 Drive locking In addition to changing the passwords, as described in Section 9.2.3, the owner should be aligned to 4K LBA boundaries. 9.6 Cryptographic erase A significant feature...
... removed from its own user-supplied password. Data bands cannot overlap but before these numbers as Authentication Keys (passwords) for the drive's Admin and Locking SPs. 9.4 Drive locking In addition to changing the passwords, as described in Section 9.2.3, the owner should be aligned to 4K LBA boundaries. 9.6 Cryptographic erase A significant feature...
Constellation ES.2 SAS Product Manual
Page 45
The download file must be an SED file. For example it erases all SPs (Security Providers) on the 12V supply. See the tables in Section 7.3 for the drive. The download must be applicable to the correct drive model, and ... the standard (non-SED) drive models. 9.9 Supported commands The SED models support the following two commands in addition to the commands supported by the appropriate Seagate Design Center.
The download file must be an SED file. For example it erases all SPs (Security Providers) on the 12V supply. See the tables in Section 7.3 for the drive. The download must be applicable to the correct drive model, and ... the standard (non-SED) drive models. 9.9 Supported commands The SED models support the following two commands in addition to the commands supported by the appropriate Seagate Design Center.
Constellation ES.2 SAS Product Manual
Page 69
... 22 ACA active status 54 ACA active, faulted initiator status 54 acoustics 31 active LED Out signal 59 actuator 9 assembly design 7 adaptive caching 54 Admin SP 35 AES-128 data encryption 35 air cleanliness 31 air flow 43 illustrated 43 air inlet 43 altitude 29 ambient 28 ambient temperature 43 ANSI...
... 22 ACA active status 54 ACA active, faulted initiator status 54 acoustics 31 active LED Out signal 59 actuator 9 assembly design 7 adaptive caching 54 Admin SP 35 AES-128 data encryption 35 air cleanliness 31 air flow 43 illustrated 43 air inlet 43 altitude 29 ambient 28 ambient temperature 43 ANSI...
Constellation ES.1 SAS Product Manual
Page 4
... 7.5.7 Corrosive environment 39 7.5.8 Electromagnetic susceptibility 39 7.6 Mechanical specifications 40 8.0 About FIPS 41 9.0 About self-encrypting drives 43 9.1 Data encryption 43 9.2 Controlled access 43 9.2.1 Admin SP 43 9.2.2 Locking SP 43 9.2.3 Default password 44 9.3 Random number generator (RNG 44 9.4 Drive locking 44 9.5 Data bands 44 9.6 Cryptographic erase 44 9.7 Authenticated firmware download 44 9.8 Power requirements...
... 7.5.7 Corrosive environment 39 7.5.8 Electromagnetic susceptibility 39 7.6 Mechanical specifications 40 8.0 About FIPS 41 9.0 About self-encrypting drives 43 9.1 Data encryption 43 9.2 Controlled access 43 9.2.1 Admin SP 43 9.2.2 Locking SP 43 9.2.3 Default password 44 9.3 Random number generator (RNG 44 9.4 Drive locking 44 9.5 Data bands 44 9.6 Cryptographic erase 44 9.7 Authenticated firmware download 44 9.8 Power requirements...
Constellation ES.1 SAS Product Manual
Page 51
... and security services for the protection of stored data, commonly known as "protection of the drive's possible16 data bands (see Section 9.4). Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as detailed in Cipher Block Chaining (CBC) mode to encrypt... data as it is available using the SID (Secure ID) password or the MSID (Manufacturers Secure ID) password. 9.2.2 Locking SP The Locking SP controls read from the drive in their command payloads. 9.1 Data encryption Encrypting drives use the security features in the drive, the...
... and security services for the protection of stored data, commonly known as "protection of the drive's possible16 data bands (see Section 9.4). Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as detailed in Cipher Block Chaining (CBC) mode to encrypt... data as it is available using the SID (Secure ID) password or the MSID (Manufacturers Secure ID) password. 9.2.2 Locking SP The Locking SP controls read from the drive in their command payloads. 9.1 Data encryption Encrypting drives use the security features in the drive, the...
Constellation ES.1 SAS Product Manual
Page 52
... from the factory, the drive is configured with a single data band called Band 0 (also known as described in order for the drive's Admin and Locking SPs. 9.4 Drive locking In addition to perform a cryptographic erase. An additional 14 Data Bands may be set to "PowerCycle" to prevent unwanted firmware download attempts, the... hardware RNG that the data bands will not honor any data read or write requests until the bands have been cryptographically signed by the appropriate Seagate Design Center.
... from the factory, the drive is configured with a single data band called Band 0 (also known as described in order for the drive's Admin and Locking SPs. 9.4 Drive locking In addition to perform a cryptographic erase. An additional 14 Data Bands may be set to "PowerCycle" to prevent unwanted firmware download attempts, the... hardware RNG that the data bands will not honor any data read or write requests until the bands have been cryptographically signed by the appropriate Seagate Design Center.
Constellation ES.1 SAS Product Manual
Page 53
... with a new data encryption key randomly generated by the standard (non-SED) models as listed in power consumption. CRYPTOGRAPHIC ERASE This command cryptographically erases all SPs (Security Providers) on the drive by destroying the current data encryption key and replacing it must pass the acceptance criteria for power requirements on the...
... with a new data encryption key randomly generated by the standard (non-SED) models as listed in power consumption. CRYPTOGRAPHIC ERASE This command cryptographically erases all SPs (Security Providers) on the drive by destroying the current data encryption key and replacing it must pass the acceptance criteria for power requirements on the...
Constellation ES.1 SAS Product Manual
Page 81
... 22 ACA active status 65 ACA active, faulted initiator status 65 acoustics 39 active LED Out signal 70 actuator 9 assembly design 7 adaptive caching 65 Admin SP 43 AES-128 data encryption 43 air cleanliness 39 air flow 52 illustrated 52 air inlet 52 altitude 37 ambient 36 ambient temperature 52 ANSI...
... 22 ACA active status 65 ACA active, faulted initiator status 65 acoustics 39 active LED Out signal 70 actuator 9 assembly design 7 adaptive caching 65 Admin SP 43 AES-128 data encryption 43 air cleanliness 39 air flow 52 illustrated 52 air inlet 52 altitude 37 ambient 36 ambient temperature 52 ANSI...
Constellation ES (.1) SATA Product Manual
Page 3
Contents Seagate Technology Support Services 1 1.0 Introduction 3 1.1 About the Serial ATA interface 4 2.0 Drive specifications 5 2.1 Specification summary tables 5 2.2 Formatted capacity 7 2.2.1 LBA mode 7 2.3 Default logical geometry 7 2.4 Recording and interface technology 7 2.5 ... 28 3.3 Serial ATA cables and connectors 28 3.4 Drive mounting 29 4.0 About FIPS 30 5.0 About self-encrypting drives 31 5.1 Data encryption 31 5.2 Controlled access 31 5.2.1 Admin SP 31 5.2.2 Locking SP 31 5.2.3 Default password 32 i Constellation ES Serial ATA Product Manual, Rev. D
Contents Seagate Technology Support Services 1 1.0 Introduction 3 1.1 About the Serial ATA interface 4 2.0 Drive specifications 5 2.1 Specification summary tables 5 2.2 Formatted capacity 7 2.2.1 LBA mode 7 2.3 Default logical geometry 7 2.4 Recording and interface technology 7 2.5 ... 28 3.3 Serial ATA cables and connectors 28 3.4 Drive mounting 29 4.0 About FIPS 30 5.0 About self-encrypting drives 31 5.1 Data encryption 31 5.2 Controlled access 31 5.2.1 Admin SP 31 5.2.2 Locking SP 31 5.2.3 Default password 32 i Constellation ES Serial ATA Product Manual, Rev. D
Constellation ES (.1) SATA Product Manual
Page 37
...16 data bands on the media and when it is inaccessible to the host system. Access to the Locking SP is the number of the data band (0 through 15). Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as gatekeepers to the drive security ...services. Access to the Admin SP is an organization sponsored and operated by the TCG. These drives are always in ...
...16 data bands on the media and when it is inaccessible to the host system. Access to the Locking SP is the number of the data band (0 through 15). Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as gatekeepers to the drive security ...services. Access to the Admin SP is an organization sponsored and operated by the TCG. These drives are always in ...
Constellation ES (.1) SATA Product Manual
Page 38
...This scenario occurs if the drive is removed from its own user-supplied password. The host may allocate Band1 by the appropriate Seagate Design Center. An additional 14 Data Bands may change all passwords are set to unique owner-specified values. 5.3 Random number generator...significant feature of MSID. Three conditions must be met before these numbers as Authentication Keys (passwords) for the drive's Admin and Locking SPs. 5.4 Drive locking In addition to prevent unwanted firmware download attempts, the drive also only accepts download files which comprises LBA 0 through...
...This scenario occurs if the drive is removed from its own user-supplied password. The host may allocate Band1 by the appropriate Seagate Design Center. An additional 14 Data Bands may change all passwords are set to unique owner-specified values. 5.3 Random number generator...significant feature of MSID. Three conditions must be met before these numbers as Authentication Keys (passwords) for the drive's Admin and Locking SPs. 5.4 Drive locking In addition to prevent unwanted firmware download attempts, the drive also only accepts download files which comprises LBA 0 through...
Constellation ES (.1) SATA Product Manual
Page 39
... sub-commands. The download file must be provided. Support of the random data sector (the returned data will support the RevertSP feature which erases all SPs (Security Providers) on SED SATA drives The ATA SECURITY ERASE UNIT command shall support both the Normal and Enhanced erase modes with the following two...
... sub-commands. The download file must be provided. Support of the random data sector (the returned data will support the RevertSP feature which erases all SPs (Security Providers) on SED SATA drives The ATA SECURITY ERASE UNIT command shall support both the Normal and Enhanced erase modes with the following two...
Constellation ES (.1) SATA Product Manual
Page 52
...-transfer rate OD 7 is 8 ISO document 7779 21 ITE 23 K KCC 24 Korean Communications Commission 24 Korean RRL 24 L latency 8 latency time 9 LBA mode 7 Locking SP 31 LockOnReset 32 logical geometry 7 M maintenance 23 Manufacturers Secure ID 31 master/slave 4 maximum start current 10, 11, 12 mounting 29 46 mounting screws 20...
...-transfer rate OD 7 is 8 ISO document 7779 21 ITE 23 K KCC 24 Korean Communications Commission 24 Korean RRL 24 L latency 8 latency time 9 LBA mode 7 Locking SP 31 LockOnReset 32 logical geometry 7 M maintenance 23 Manufacturers Secure ID 31 master/slave 4 maximum start current 10, 11, 12 mounting 29 46 mounting screws 20...
Constellation ES SAS Product Manual
Page 4
... 7.5.7 Corrosive environment 39 7.5.8 Electromagnetic susceptibility 39 7.6 Mechanical specifications 40 8.0 About FIPS 41 9.0 About self-encrypting drives 42 9.1 Data encryption 42 9.2 Controlled access 42 9.2.1 Admin SP 42 9.2.2 Locking SP 43 9.2.3 Default password 43 9.3 Random number generator (RNG 43 9.4 Drive locking 43 9.5 Data bands 43 9.6 Cryptographic erase 44 9.7 Authenticated firmware download 44 9.8 Power requirements...
... 7.5.7 Corrosive environment 39 7.5.8 Electromagnetic susceptibility 39 7.6 Mechanical specifications 40 8.0 About FIPS 41 9.0 About self-encrypting drives 42 9.1 Data encryption 42 9.2 Controlled access 42 9.2.1 Admin SP 42 9.2.2 Locking SP 43 9.2.3 Default password 43 9.3 Random number generator (RNG 43 9.4 Drive locking 43 9.5 Data bands 43 9.6 Cryptographic erase 44 9.7 Authenticated firmware download 44 9.8 Power requirements...
Constellation ES SAS Product Manual
Page 50
Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as it is read from the performance of the drive. The 32-byte ... the drive's owner to enable or disable firmware download operations (see Section 9.5). 9.2 Controlled access The drive has two security partitions (SPs) called the "Admin SP" and the "Locking SP." To use the security features in the drive, the host must be capable of constructing and issuing the following two SCSI commands: • Security...
Seagate's SED models comply with the Trusted Computing Group (TCG) Enterprise Storage Specifications as it is read from the performance of the drive. The 32-byte ... the drive's owner to enable or disable firmware download operations (see Section 9.5). 9.2 Controlled access The drive has two security partitions (SPs) called the "Admin SP" and the "Locking SP." To use the security features in the drive, the host must be capable of constructing and issuing the following two SCSI commands: • Security...
Constellation ES SAS Product Manual
Page 51
... drive, it is the responsibility of the owner to use the default MSID password as Authentication Keys (passwords) for the drive's Admin and Locking SPs. 9.4 Drive locking In addition to 16 data bands on the drive label and it is uses to derive encryption keys or, if requested to...0 (also known as described in a similar way (Band2 through LBA max. The bands should be read /write access to the Locking SP is lost. 9.2.2 Locking SP The Locking SP controls read by specifying a start LBA and an LBA range. Since the drive owner can be set the data access controls for system...
... drive, it is the responsibility of the owner to use the default MSID password as Authentication Keys (passwords) for the drive's Admin and Locking SPs. 9.4 Drive locking In addition to 16 data bands on the drive label and it is uses to derive encryption keys or, if requested to...0 (also known as described in a similar way (Band2 through LBA max. The bands should be read /write access to the Locking SP is lost. 9.2.2 Locking SP The Locking SP controls read by specifying a start LBA and an LBA range. Since the drive owner can be set the data access controls for system...
Constellation ES SAS Product Manual
Page 79
... 22 ACA active status 63 ACA active, faulted initiator status 63 acoustics 39 active LED Out signal 68 actuator 8 assembly design 6 adaptive caching 63 Admin SP 42 AES-128 data encryption 42 air cleanliness 39 air flow 50 illustrated 50 air inlet 50 altitude 37 ambient 36 ambient temperature 50 ANSI...
... 22 ACA active status 63 ACA active, faulted initiator status 63 acoustics 39 active LED Out signal 68 actuator 8 assembly design 6 adaptive caching 63 Admin SP 42 AES-128 data encryption 42 air cleanliness 39 air flow 50 illustrated 50 air inlet 50 altitude 37 ambient 36 ambient temperature 50 ANSI...