{"product_id":10395,"v_id":10395,"product_name":"WhiteCanyon WipeDrive Version 6.1","certification_status":"Not Certified","certification_date":"2010-12-14T00:12:00Z","tech_type":"Sensitive Data Protection","vendor_id":{"name":"WhiteCanyon Software","website":"www.whitecanyon.com"},"vendor_poc":"Nathan Jones","vendor_phone":"801-224-2955","vendor_email":null,"assigned_lab":{"cctl_name":"Booz Allen Hamilton Common Criteria Testing Laboratory"},"product_description":"<p>WipeDrive is a disk sanitizing tool that permanently erases all data from hard drives and other data storage devices. &nbsp;This includes but is not exclusive to: HPA partitions, DCO partitions, remapped sectors, operating systems, programs, and user files. This data is permanently destroyed as to make any type of forensic data recovery impossible.&nbsp;</p>\r\n<p>The TOE primarily provides data destruction in accordance with US DoD 5220.22-M.&nbsp; WipeDrive complies with all of the following disk wipe standards:</p>\r\n<ul>\r\n<li>US DoD 5220.22-M</li>\r\n<li>Standard single pass overwrite</li>\r\n<li>US Army AR380-19</li>\r\n<li>US Air Force System Security Instruction 5020</li>\r\n<li>US Navy Staff Office&nbsp; Publication P-5329-26</li>\r\n<li>US National Computer Security Center TG-025</li>\r\n<li>Australian Defense Signals Directorate ACSI-33 (X0-PD)</li>\r\n<li>Australian Defense Signals Directorate ACSI-33 (X1-P-PD)</li>\r\n<li>Canadian RCMP TSSIT OPS-II Standard Wipe</li>\r\n<li>CIS GOST P50739-95</li>\r\n<li>GB HMG Infosec Standard #5 Baseline</li>\r\n<li>GB HMG Infosec Standard #5 Enhanced</li>\r\n<li>German VSITR</li>\r\n</ul>\r\n<p>Upon completion of data sanitization an audit log is created detailing the wipe process.&nbsp; This includes the drive serial number, date of sanitization, pattern used, and protections removed.&nbsp; This audit log certifies compliance with the needed regulatory requirement(s).&nbsp;</p>\r\n<p>&nbsp;</p>","evaluation_configuration":"<p>Several different machines and configurations of said machines were used within the testing environment. PCs with ATA drives, PCs with a SCSI drive, and a Mac with an ATA drive were used within testing. &nbsp;</p>","security_evaluation_summary":"<p>The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) processes and procedures. WipeDrive was evaluated against the criteria contained in the Common Criteria for Information Technology Security Evaluation, Version 3.1 Revision 3. The evaluation methodology used by the evaluation team to conduct the evaluation is the Common Methodology for Information Technology Security Evaluation, Version 3.1 Revision 3. It has been determined that the product meets the security criteria in the Security Target, which specifies an assurance level of EAL4 augmented with ALC_FLR.2 and ASE_TSS.2. Validators, on behalf of the CCEVS Validation Body, monitored the evaluation. The evaluation was completed in January 2011.</p>\r\n<p>&nbsp;</p>","environmental_strengths":"<p><strong><em>Security Audit</em></strong></p>\r\n<p>The TOE generates and captures audit data which is used to verify and document that an erasure event has occurred. Audit logs containing verification data (either denoting a success of failure) is stored in the Log Storage component.&nbsp; The resulting output of a wipe operation is displayed in an easily interpretable manner.&nbsp;&nbsp; Other events that are recorded include the start-up and shutdown of the audit functions and various parameters related to the TOE&rsquo;s probe, scan, and subsequent erasure of targets on a drive.&nbsp; All audit operations can be associated with the administrator who performed that event.&nbsp;&nbsp; The TOE saves the audit events in commonly used user-readable formats outside of the TOE and provides a review of wipe results immediately following a wipe operation.</p>\r\n<p>&nbsp;</p>\r\n<p><strong><em>Security Management</em></strong></p>\r\n<p>The only users of the TOE are referred to as administrators. Administrators are the individuals who maintain physical access to the WipeDrive application, and, as a result, possess several management capabilities. Administrators are able to specify the location for audit storage (in the Log Storage component), specify the format in which this data is stored, create, run, view, or delete an administrator definable wipe pattern, scan for devices, view sector data, and get device info for all devices previously scanned.</p>\r\n<p>The TOE is equipped to operate via various interfaces which are made available to administrators. The administrators of the TOE utilize these interfaces to perform the management functions listed above. The primary purposes of these interfaces are to:</p>\r\n<ol>\r\n<li>Allow commands defined by the TOE to be invoked on the attached WipeDrive application;</li>\r\n<li>Visually display the status of the attached WipeDrive application by interpreting the responses and notifications received; and</li>\r\n<li>Create audit logs according to the user&rsquo;s preferences. The logs can be stored on any form of media that the user desires, e.g a thumb drive or on an FTP server). </li>\r\n</ol>\r\n<p>The TOE can be operated via two user interfaces &ndash; a TUI (text user interface) or GUI (graphical user interface). The TUI runs on the same host as the WipeDrive application (back-end). It is used primarily for systems that do not have framebuffer support &ndash; which is typical on many architectures other than x86 like Sparc, PowerPC and PA-RISC. The GUI is also run on the same host as the back-end. This will be the default interface for x86 machines that support framebuffer graphics.</p>\r\n<p>&nbsp;</p>\r\n<p><strong><em>Disk Erasure </em></strong></p>\r\n<p>The TOE performs three distinct operations: scanning of devices, probing of devices, and the erasure of devices. Scanning and probing are performed during the initialization of the TOE. Administrators, whether via the GUI or TUI, can execute commands to wipe drives. The wipe command applies the administrator selected wipe pattern to each selected disk instance, which performs the overwrite operations directly on the disk.</p>\r\n<p>&nbsp;</p>\r\n<p><strong><em>User Data Protection</em></strong></p>\r\n<p>The TOE provides for the erasure of information. This erasure is initiated through the TUI (or GUI) and requires communication with the information repository (disk). The erasure of residual information is performed when an administrator selects a target device and wipe pattern. No residual information will reside in the RAM subsequent to a wipe event.</p>","features":[]}