{"product_id":11703,"v_id":11703,"product_name":"DigiStor Enterprise PCIe Gen 5 SSD Self Encrypting Drives","certification_status":"Certified","certification_date":"2026-08-05T00:00:00Z","tech_type":"Encrypted Storage","vendor_id":{"name":"DigiStor","website":"https://www.digistor.com/"},"vendor_poc":"Kalan Nutsford","vendor_phone":"408-796-5143","vendor_email":"knutsford@digistor.com","assigned_lab":{"cctl_name":"Leidos Common Criteria Testing Laboratory"},"product_description":"<p>The TOE comprises the DigiStor Enterprise PCIe Gen 5 SSD Self Encrypting Drives.&nbsp;</p>\r\n<p>The DigiStor Enterprise PCIe Gen 5 SSD Self Encrypting Drives implement NIST-recommended cryptographic algorithms.&nbsp; The CAVP certificates are identified in Section 6.2. &nbsp;The SEDs provide an Instant Secure Erase (ISE) function and full protection of customer data-at-rest with self-encrypting drive locking.&nbsp;&nbsp; The DigiStor Enterprise PCIe Gen 5 SSD Self Encrypting Drives are designed in accordance with Trusted Computing Group (TCG) specifications.</p>\r\n<p>The TOE provides the Full Disk Encryption (FDE) Encryption Engine functionality as defined by [CPPFDE_EE]. In particular, the TOE provides data encryption, policy enforcement, and key management functions. The TOE provides for the generation, update, protection, and destruction of the data encryption key (DEK) and other intermediate keys under its control.</p>","evaluation_configuration":"<p>The evaluated configuration of the TOE is achieved by adhering to the DIGISTOR NVMe Self-Encrypting Drives Common Criteria Configuration Guide, Version 1.0.</p>","security_evaluation_summary":"<p>The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) process and scheme for the <em>collaborative Protection Profile for Full Drive Encryption &ndash; Encryption Engine</em>, Version 2.0+Errata 20190201, 1 February 2019. The evaluation methodology used by the evaluation team to conduct the evaluation is <em>Common Methodology for Information Technology Security Evaluation</em>, Version 3.1 release 5, April 2017. The product, when delivered configured as identified in the guidance document, satisfies all the security functional requirements stated in <em>DigiStor Enterprise PCIe Gen 5 SSD Self Encrypting Drives Security Target</em>, Version 0.8, 18 June 2026. The evaluation was completed in June 2026. Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report prepared by CCEVS.</p>","environmental_strengths":"<p><strong><em>Cryptographic Support</em></strong></p>\r\n<p>The TOE implements NIST-validated cryptographic algorithms supporting cryptographic functions.&nbsp; The TOE provides Key Wrapping, Key Derivation, and Border Encryption Value (BEV) Validation.&nbsp;</p>\r\n<p><strong><em>User Data Protection</em></strong></p>\r\n<p>The TOE performs Full Drive Encryption such that the drive contains no plaintext user data. The TOE performs user data encryption by default in the out-of-the-box configuration using AES in XTS mode with 256 bit encryption keys.&nbsp;</p>\r\n<p><strong><em>Security Management</em></strong></p>\r\n<p>The TOE supports management functions for changing and erasing the DEK, initiating TOE firmware updates, and configuring a password for firmware updates.</p>\r\n<p><strong><em>Protection of the TSF</em></strong></p>\r\n<p>The TOE provides trusted firmware update and update access control functions; protects Key and Key Material; and supports power saving states.&nbsp; The TOE runs a suite of self-tests during initial start-up (on power on).</p>","features":[{"id":5770,"feature_name":"Full Drive Encryption"}]}