Cryptographic Module Validation Program CMVP

Certificate #4802

Details

Module Name
Ultrastar DC HC560 TCG Enterprise HDD SED, Ultrastar DC HC570 TCG Enterprise HDD SED
Standard
FIPS 140-3
Status
Active
Sunset Date
9/15/2026
Overall Level
2
Caveat
Interim validation. When installed, initialized and configured as specified in Section 11.1 of the Security Policy. No operator authentication is enforced for executing security services that were unlocked by an authenticated service
Security Level Exceptions
  • Operational environment: N/A
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Hardware
Embodiment
Multi-Chip Embedded
Description
The Western Digital Ultrastar DC HC560 TCG Enterprise HDD, hereafter referred to as Ultrastar DC HC560, Cryptographic Module, cryptographic module, or CM, and the Western Digital Ultrastar DC HC570 TCG Enterprise HDD, hereafter referred to as Ultrastar DC HC570, Cryptographic Module, cryptographic module, or CM are self-encryption drives (SED) that comply in general with the specifications listed in 13.2 Trusted Computing Group Specifications and specifically with the TCG Storage Architecture Core Specification [TCG Core] with the Trusted Computing Group (TCG) Security Subsystem Class (SSC): Enterprise Specification [TCG Enterprise]. The TCG SSC Enterprise Specification defines a management interface for host application software to activate, provision, and manage encryption of user data. The specification includes data structures and their required content, and mechanisms for managing and configuring Authentication Credentials and access controls. The security architecture provides a locking mechanism by which an Authentication Credential (i.e., a password) can be set by an operator to enable control of access to user data. After an operator authenticates to the appropriate role and locks access to user data access user data is inaccessible. This implementation complies with the lock-based authentication model specified in IG 4.1.A.
Tested Configuration(s)
  • N/A
Approved Algorithms
AES-CBC
AES-CBC
AES-ECB
AES-ECB
AES-KWP
AES-XTS
AES-XTS
Counter DRBG
HMAC-SHA-1
HMAC-SHA2-224
HMAC-SHA2-256
PBKDF
RSA SigVer (FIPS186-4)
RSA SigVer (FIPS186-4)
SHA-1
SHA2-224
SHA2-256
SHA2-256
Hardware Versions
WUH722020BL4205 [1, 2, 3, 4], WUH722020BL5205 [1, 2, 3, 4], WUH722222BL4205 [3, 5] , WUH722222BL5205 [3, 5]
Firmware Versions
RY07 [1], R5G4 [2], RG01 [3], VM18 [4], R7J4 [5]

Vendor

Western Digital Technologies, Inc.
5601 Great Oaks Parkway
San Jose, CA 95119
USA

Michael Williamson
michael.williamson@wdc.com
Phone: 408-717-8458
Nicholas Eu
nicholas.eu@wdc.com
Phone: 949-672-6607

Validation History

Date Type Lab
9/16/2024 Initial UL VERIFICATION SERVICES INC
1/30/2025 Update UL VERIFICATION SERVICES INC