Monday, August 16, 2010

Data Sanitization: DOD 5220.22-M vs NIST 800.88



if you compare the spec of DOD 5220.22-M with NIST 800.88, you will notice NIST offer the same level of security and provide significant speed advantage.

http://cmrr.ucsd.edu/people/Hughes/DataSanitizationTutorial.pdf

time:  from days to hour  (could be days to minute in case of encrypted secure erasure, if your drive have encrypted option).


the trick is of course the drive have to made 2001 and after, and is only officially enforce in ATA drive.  SCSI implementation may be optional.    I think hybrid approach may work...

use NIST first, when failed (due to lack of command support) apply DOD 5220.22-M as a backup.

http://cmrr.ucsd.edu/people/Hughes/SecureErase.shtml

No comments:

Post a Comment