Seagate ST33000651SS Constellation ES SAS Product Manual - Page 49

About FIPS

Page 49 highlights

8.0 About FIPS The Federal Information Processing Standard (FIPS) Publication 140-2, FIPS PUB 140-2, is a U.S. government computer security standard used to accredit cryptographic modules. It is titled "Security Requirements for Cryptographic Modules". The initial publication was on May 25, 2001 and was last updated December 3, 2002. Purpose The National Institute of Standards and Technology (NIST) issued the FIPS 140 Publication Series to coordinate the requirements and standards for cryptography modules that include both hardware and software components. Federal Information Processing Standard (FIPS) 140-2 Level 2 Certification requires drives to go through government agencies certifications to add requirements for physical tamper-evidence and role-based authentication. Level 2 security Level 2 improves upon the physical security mechanisms of a Level 1 (lowest level of security) cryptographic module by requiring features that show evidence of tampering, including tamper-evident coatings or seals that must be broken to attain physical access to the plaintext cryptographic keys and critical security parameters (CSPs) within the module, or pick-resistant locks on covers or doors to protect against unauthorized physical access. Figure 13. Example of FIPS tamper evidence labels. Does not represent actual drive. Constellation ES Series SAS Product Manual, Rev. F 41

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86

Constellation ES Series SAS Product Manual, Rev. F
41
8.0
About FIPS
The Federal Information Processing Standard (FIPS) Publication 140-2, FIPS PUB 140-2, is a U.S. govern-
ment computer security standard used to accredit cryptographic modules. It is titled “Security Requirements for
Cryptographic Modules”. The initial publication was on May 25, 2001 and was last updated December 3, 2002.
Purpose
The National Institute of Standards and Technology (NIST) issued the FIPS 140 Publication Series to coordi-
nate the requirements and standards for cryptography modules that include both hardware and software com-
ponents.
Federal Information Processing Standard (FIPS) 140-2 Level 2 Certification requires drives to go through gov-
ernment agencies certifications to add requirements for physical tamper-evidence and role-based authentica-
tion.
Level 2 security
Level 2 improves upon the physical security mechanisms of a Level 1 (lowest level of security) cryptographic
module by requiring features that show evidence of tampering, including tamper-evident coatings or seals that
must be broken to attain physical access to the plaintext cryptographic keys and critical security parameters
(CSPs) within the module, or pick-resistant locks on covers or doors to protect against unauthorized physical
access.
Figure 13.
Example of FIPS tamper evidence labels.
Does not represent actual drive.