NIAP: Compliant Product
NIAP/CCEVS
  NIAP  »»  Product Compliant List  »»  Compliant Product  
Compliant Product - SeagateĀ® Secure NVMe Self-Encrypting Drives

Certificate Date:  2024.04.25

Validation Report Number:  CCEVS-VR-VID11416-2024

Product Type:    Encrypted Storage

Conformance Claim:  Protection Profile Compliant

PP Identifier:    collaborative Protection Profile for Full Drive Encryption - Encryption Engine Version 2.0 + Errata 20190201

CC Testing Lab:  Leidos Common Criteria Testing Laboratory


CC Certificate [PDF] Security Target [PDF] Validation Report [PDF]

Assurance Activity [PDF]

Administrative Guide [PDF]


Product Description

The Target of Evaluation (TOE) comprises the following Seagate® Secure NVMe Self-Encrypting Drives (SEDs) provided by Seagate Technology LLC. and developed by Phison Electronics Corporation:

Product Name

Model #

Firmware

Nytro 5550H 15mm U.2/U.3 Mixed Use

XP800LE70025

XP1600LE70025

XP3200LE70025

XP6400LE70025

XP12800LE70025

SE4SA530

SGEBHG02

Nytro 5350H 15mm U.2/U.3 Read Intensive

XP1920SE70025

XP3840SE70025

XP7680SE70025

XP15360SE70025

SE4SA530

SGEBHG02

Nytro 5550M 15mm U.2/U.3 Mixed Use

XP800LE70055

XP1600LE70055

XP3200LE70055

XP6400LE70055

XP12800LE70055

SE4SA530

SGEBHG02

Nytro 5350M 15mm U.2/U.3 Read Intensive

XP1920SE70055

XP3840SE70055

XP7680SE70055

XP15360SE70055

SE4SA530

SGEBHG02

Nytro 5550M 7mm U.2/U.3 Mixed Use

XP800LE10025

XP1600LE10025

XP3200LE10025

XP6400LE10025

SE4SA530

SGEBHG02

Nytro 5350M 7mm U.2/U.3 Read Intensive

XP1920SE10025

XP3840SE10025

XP7680SE10025

SE4SA530

SGEBHG02

The SEDs implement NIST-validated cryptographic algorithms and provide an Instant Secure Erase (ISE) function and full protection of customer data-at-rest with self-encrypting drive locking. They are designed in accordance with Trusted Computing Group (TCG) specifications.

The TOE provides the Full Disk Encryption (FDE) Encryption Engine functionality as specified by collaborative Protection Profile for Full Drive Encryption – Encryption Engine. In particular, the TOE provides data encryption, policy enforcement, and key management functions. The TOE provides for the generation, update, protection, and destruction of the Data Encryption Key (DEK) and other intermediate keys under its control. 


Evaluated Configuration


Security Evaluation Summary

The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) process and scheme for the collaborative Protection Profile for Full Drive Encryption – Encryption Engine, Version 2.0+Errata 20190201, 1 February 2019. The evaluation methodology used by the evaluation team to conduct the evaluation is Common Methodology for Information Technology Security Evaluation, Version 3.1 release 5, April 2017. The product, when delivered configured as identified in the guidance document, satisfies all the security functional requirements stated in Seagate® Secure NVMe Self-Encrypting Drives Security Target, Version 0.24, 07 March 2024. The evaluation was completed in April 25, 2024. Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report prepared by CCEVS.


Environmental Strengths

Cryptographic Support

The TOE implements NIST-validated cryptographic algorithms supporting cryptographic functions.  The TOE provides Key Wrapping, Key Derivation, and Border Encryption Value (BEV) Validation. 

User Data Protection

The TOE performs Full Drive Encryption such that the drive contains no plaintext user data. The TOE performs user data encryption by default in the out-of-the-box configuration using AES in XTS mode with 256 bit encryption keys. 

Security Management

The TOE supports management functions for changing and erasing the DEK, initiating TOE firmware updates, and configuring a password for firmware updates.

Protection of the TSF

The TOE: provides trusted firmware update and update access control functions; protects Key and Key Material; and supports power saving states.  The TOE runs a suite of self-tests during initial start-up (on power on).


Vendor Information


Seagate Technology LLC.
Brian Stark
510-661-1000
brian.d.stark@seagate.com

www.seagate.com
Site Map              Contact Us              Home