Storage Controller Cryptographic Erase Verification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current data sanitization methods, particularly cryptographic erase, lack reliability in verifying the deletion of media encryption keys (MEKs) in storage devices, making it difficult to ensure secure disposal or reuse of storage devices.
Innovation Solution
A storage device with a nonvolatile memory (NVM) and a storage controller that receives a command for cryptographic erase, generates and transmits verification values indicating whether the MEK has been deleted and a new MEK has been generated, ensuring reliable sanitization operations.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Object-affected harmful factors
If cryptographic erase is used to sanitize data, then data security is improved, but reliability of verification is worsened
Solution Approach 1:
The patent implements a feedback mechanism where the storage controller generates verification values (first and second verification values) that provide feedback to the host device about the status of MEK deletion and regeneration. This allows the host to verify whether the cryptographic erase operation was successfully completed, resolving the reliability issue while maintaining data security through the cryptographic erase method itself.
Solution Approach 2:
The storage controller performs preliminary actions by generating verification values before the host device needs to verify the sanitization status. The controller proactively prepares and transmits the first verification value (indicating MEK deletion) and second verification value (indicating new MEK generation) to the host, enabling reliable verification without requiring complex post-operation checking procedures.
2Reliability
If verification values are transmitted to confirm MEK deletion, then sanitization reliability is improved, but communication overhead is worsened
Solution Approach 1:
The verification mechanism uses localized quality by transmitting only specific verification values (first and second verification values) that are directly relevant to confirming MEK deletion and regeneration, rather than transmitting all possible status information. This minimizes communication overhead while maintaining sanitization reliability by focusing only on the critical verification data needed.
Data Source
AI summary
A storage device, a method of operating the storage device, and a method of operating a host device are provided. The storage device includes a nonvolatile memory (NVM) and a storage controller controlling the nonvolatile memory. The storage controller is configured to receive a command from a host device giving instructions to sanitize data with the use of a cryptographic erase. The storage controller is also configured to, in response to a request from the host device, transmit to the host device a first verification value indicative of whether a first media encryption key (MEK) stored in the NVM has been deleted and a second verification value indicative of whether a second MEK, which is different from the first MEK, has been generated and stored in the NVM.


