Engineering:Opal Storage Specification

From HandWiki
Short description: Data storage device security specification

The Opal Storage Specification[1] is a set of specifications for features of data storage devices (such as hard disk drives and solid state drives) that enhance their security. For example, it defines a way of encrypting the stored data so that an unauthorized person who gains possession of the device cannot see the data. That is, it is a specification for self-encrypting drives (SED).

The specification is published by the Trusted Computing Group Storage Workgroup.

Overview

The Opal SSC (Security Subsystem Class)[2][3]is an implementation profile for Storage Devices (SD) built to:

  • Protect the confidentiality of stored user data against unauthorized access once it leaves the owner's control (involving a power cycle and subsequent deauthentication).
  • Enable interoperability between multiple SD vendors.[4]

Security

Radboud University researchers indicated in November 2018 that some hardware-encrypted SSDs, including some Opal implementations, had security vulnerabilities.[5]

Implementers of SSC

Device companies

Storage controller companies

Software companies

Computer OEMs

References

  1. "TCG Storage Security Subsystem Class: Opal Specification" (in en-US). https://trustedcomputinggroup.org/resource/storage-work-group-storage-security-subsystem-class-opal/. 
  2. "Flash Memory Security: Increased Confidentiality & Integrity" (in en-US). https://www.penguinsolutions.com/en-us/resources/blog/integrated-memory-featured-technology-security. 
  3. Yumpu.com. "Opal Storage Specification - Trusted Computing Group" (in en). https://www.yumpu.com/en/document/view/27310880/opal-storage-specification-trusted-computing-group. 
  4. TCG Storage Security Subsystem Class: Opal Specification Version 2.01 Revision 1.00. Trusted Computing Group, Incorporated. 05 August 2015. Retrieved 2019-11-22.
  5. Meijer, Carlo; van Gastel, Bernard (19–23 May 2019). "Self-Encrypting Deception: Weaknesses in the Encryption of Solid State Drives". 2019 IEEE Symposium on Security and Privacy (SP). San Francisco, CA, USA: IEEE. pp. 72–87. doi:10.1109/SP.2019.00088. ISBN 978-1-5386-6660-9. 
  6. "Intel® SSD Pro 1500 Series (M.2): Specs". http://www.intel.com/content/www/us/en/solid-state-drives/ssd-pro-1500-series-m2-specification.html. Retrieved 2017-05-03. 
  7. "Solid State Hard Drives for Business". 2017-03-05. http://www.kingston.com/us/ssd/vplus/#skc300s3. Retrieved 2017-05-03. 
  8. Clain Anderson (2011-02-16). "Opal – More than a Semi-Precious Stone | Lenovo". http://blog.lenovo.com/en/blog/opal-more-than-a-semi-precious-stone. Retrieved 2017-05-03. 
  9. "Micron Technology, Inc. - Full SSD Part Catalog". http://micron.com/products/solid-state-storage/client-ssd. Retrieved 2017-05-03. 
  10. "Samsung V-NAND SSD". http://www.samsung.com/global/business/semiconductor/minisite/SSD/global/html/about/whitepaper06.html. Retrieved 2017-05-03. 
  11. "SanDisk's X300s Solid State Drive". Archived from the original on 2014-08-03. https://web.archive.org/web/20140803081737/http://www.sandisk.com/products/ssd/sata/x300s. Retrieved 2014-08-02. 
  12. "News". Seagate. http://www.seagate.com/ww/v/index.jsp?locale=en-US&name=momentus-FDE-self-encrypting,FIPS-seagate-pr&vgnextoid=f0ea53279dc0b210VgnVCM1000001a48090aRCRD. Retrieved 2017-05-03. 
  13. "Full Disk Encryption Software, Hard Drives, SSDs & Whole Disk". WinMagic. http://www.winmagic.com/solutions/self-encrypting-hard-drives. Retrieved 2017-05-03. 
  14. "Fujitsu Develops HDD Security Technology based on Opal SSC Standards - Fujitsu Global". http://www.fujitsu.com/global/news/pr/archives/month/2009/20090128-01.html. Retrieved 2017-05-03. 
  15. "Specialty | TOSHIBA Storage & Electronic Devices Solutions Company | Americas". http://storage.toshiba.com/storagesolutions/specialty-products/mkxx61gsyg-series. Retrieved 2017-05-03. 
  16. "Specialty | TOSHIBA Storage & Electronic Devices Solutions Company | Americas". http://storage.toshiba.com/storagesolutions/specialty-products/mkxx61gsyd-series. Retrieved 2017-05-03. 
  17. "Marvell Technology Group Ltd". http://www.marvell.com. Retrieved 2017-05-03. 
  18. "Marvell, Kingston Collaboration Proves Positive with Over Six Million SSD Units Shipped". https://www.kingston.com/spain/es/company/press/article/49507. 
  19. "SandForce Flash Storage Processor SSD Controllers". Archived from the original on 2013-08-08. https://web.archive.org/web/20130808084202/http://www.lsi.com/products/storagecomponents/Pages/sandforce_flash_storage_processors.aspx. Retrieved 2013-08-01. 
  20. "Self-Healing Endpoint Security". Absolute. http://www.absolute.com. Retrieved 2017-05-03. 
  21. "Industry-Leading Cyber Security Keeps Networks, Data Centers, Mobile Devices & Endpoints One Step Ahead | Check Point Software". http://www.checkpoint.com. Retrieved 2017-05-03. 
  22. "Data Security | Dell United States". 2017-04-26. http://www.dell.com/encryption. Retrieved 2017-05-03. 
  23. "CryptoMill :: Products & services". Archived from the original on 2012-02-09. https://web.archive.org/web/20120209044329/http://www.cryptomill.com/products/default.php. Retrieved 2012-01-14. 
  24. "McAfee Corporate KB - KB75045". https://kc.mcafee.com/corporate/index?page=content&id=KB75045. Retrieved 2017-05-03. 
  25. "FinallySecure™ Enterprise - SECUDE AG". Archived from the original on 2012-01-26. https://web.archive.org/web/20120126034405/http://www.secude.com/products/finallysecuretrade-enterprise/. Retrieved 2012-01-14. 
  26. "Comprehensive Data Encryption and Protection Solutions - SecureDrive". 2014-06-20. http://www.softexinc.com/securedrive/overview. Retrieved 2017-05-03. 
  27. "Full Disk Encryption | Always-On, Multi-Platform Enterprise Encryption Synchronizes Devices, Hard Drives, Removable Media, BitLocker, and Cloud Storage Protection in Real-Time". http://www.sophos.com/en-us/products/safeguard-encryption.aspx. Retrieved 2017-05-03. 
  28. "Endpoint Encryption Powered by PGP Technology". https://www.broadcom.com/products/cybersecurity. 
  29. "Archived copy". Archived from the original on 2017-09-25. https://web.archive.org/web/20170925230747/https://support.symantec.com/en_US/article.tech217784.html. Retrieved 2016-02-03. 
  30. "Data Protection – Endpoint and Gateway Suites | Trend Micro". http://us.trendmicro.com/us/products/enterprise/endpoint-encryption/index.html. Retrieved 2017-05-03. 
  31. "Full Disk Encryption Software, Hard Drives, SSDs & Whole Disk". WinMagic. http://www.winmagic.com/products. Retrieved 2017-05-03. 
  32. "Software management of TCG self-encrypting drives.". Fidelity Height LLC. https://fidelityheight.com. 
  33. "Dell Official Site | Dell United States". 2017-04-26. http://www.dell.com. Retrieved 2017-05-03. 
  34. "Laptop Computers, Desktops, Printers and more | HP® Official Site". http://www.hp.com. Retrieved 2017-05-03. 
  35. [1]
  36. "Fujitsu News Updates - Fujitsu UK". http://www.fujitsu.com/emea/news/pr/fel-de_20090128.html. Retrieved 2017-05-03. 
  37. "Panasonic Toughpad | Rugged Tablet | Toughpad". 2015-10-27. http://www.Panasonic.com/toughbook. Retrieved 2017-05-03. 
  38. "Rugged Notebooks, Tablets, Handhelds and Laptops from". http://www.Getac.com/. Retrieved 2017-05-03.