Skip to content

Commit bd4aac7

Browse files
authored
Update data-box-security.md
added secure erase documentation
1 parent 60483d4 commit bd4aac7

File tree

1 file changed

+17
-0
lines changed

1 file changed

+17
-0
lines changed

articles/databox/data-box-security.md

Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -139,7 +139,24 @@ The following security guidelines are implemented in Data Box:
139139
|[ISTA 2A](https://ista.org/docs/2Aoverview.pdf) | For adverse transport conditions endurance |
140140
|[NIST SP 800-147](https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-147.pdf) | For secure firmware update |
141141
|[FIPS 140-2 Level 2](https://csrc.nist.gov/csrc/media/publications/fips/140/2/final/documents/fips1402.pdf) | For data protection |
142+
:::zone pivot="dbx"
142143
|Appendix A, for ATA Hard Disk Drives in [NIST SP 800-88r1](https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-88r1.pdf) | For data sanitization |
144+
:::zone-end
145+
:::zone pivot="dbx-ng"
146+
|Appendix A, Table A-8 for ATA Solid State Drives in [NIST SP 800-88r1](https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-88r1.pdf) | For data sanitization |
147+
:::zone-end
148+
149+
150+
## Media Sanitization details
151+
152+
The secure erasure process performed on our devices is compliant with [NIST SP 800-88r1](https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-88r1.pdf) and following are the details of the implementation:
153+
154+
|Device |Data Erasure type |Tool used |Validation step |
155+
|------------|------------|-------------|---------|
156+
|Azure Data Box | In Public cloud: Crypto Erase <br> In Gov cloud: Crypto Erase + Disk overwrite |ARCCONF tool | Random 10% sampling + Secondary 2% Sampling using In-house tool |
157+
|Azure Data Box 120 <br> Azure Data Box 525 | In Public and Gov cloud: Block Erase |ARCCONF tool | Random 10% sampling + Secondary 2% Sampling using In-house tool |
158+
|Azure Data Box Disk | In Public and Gov cloud: Block Erase |MSECLI tool | Random 10% sampling + Secondary 2% Sampling using In-house tool |
159+
143160

144161
## Next steps
145162

0 commit comments

Comments
 (0)