IBM DTCA-24090 Hard Drive Specifications - Page 89

User Password Lost, 7.4.5, Attempt limit for SECURITY UNLOCK command

Page 89 highlights

10.7.4.4 User Password Lost If the User Password is forgotten and High level security is set, the system user can't access any data. However the device can be unlocked using the Master Password. If a system user forgets the User Password and Maximum security level is set, data access is impossible. However the device can be unlocked using the Security Erase Unit command to unlock the device and erase all user data with the Master Password. User Password Lost LEVEL ? High > Unlock CMD with Master Password Maximum V Erase Prepare Command Erase Unit Command with Master Password V Normal operation V Normal operation but data lost Figure 51. Password Lost 10.7.4.5 Attempt limit for SECURITY UNLOCK command The SECURITY UNLOCK command has an attempt limit. The purpose of this attempt limit is to prevent that someone attempts to unlock the drive by using various passwords many times. The device counts the password mismatch. If the password does not match, the device counts it up without distinguishing the Master password and the User password. If the count reaches 5, EXPIRE bit(bit 4) of Word 128 in Identify Device information is set, and then SECURITY ERASE UNIT command and SECURITY UNLOCK command are aborted until a hard reset or a power off. The count and EXPIRE bit are cleared after a power on reset or a hard reset. General Operation Descriptions 81

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190

10.7.4.4
User Password Lost
If the User Password is forgotten and High level security is set, the system user can't access any data.
However the device can be unlocked using the Master Password.
If a system user forgets the User Password and Maximum security level is set, data access is impossible.
However the device can be unlocked using the Security Erase Unit command to unlock the device and erase
all user data with the Master Password.
User Password Lost
LEVEL ?
High
>
Unlock CMD with Master Password
Maximum
V
V
Erase Prepare Command
Normal operation
Erase Unit
Command
with Master Password
V
Normal operation but data lost
Figure 51. Password Lost
10.7.4.5
Attempt limit for SECURITY UNLOCK command
The SECURITY UNLOCK command has an attempt limit. The purpose of this attempt limit is to prevent
that someone attempts to unlock the drive by using various passwords many times.
The device counts the password mismatch.
If the password does not match, the device counts it up without
distinguishing the Master password and the User password.
If the count reaches 5, EXPIRE bit(bit 4) of
Word 128 in Identify Device information is set, and then SECURITY ERASE UNIT command and SECU-
RITY UNLOCK command are aborted until a hard reset or a power off.
The count and EXPIRE bit are
cleared after a power on reset or a hard reset.
General Operation Descriptions
81