SCSI Commands: 43BSECURITY PROTOCOL IN
Page
188
Field
Bytes
Bits
Description
AVFCLP 5
6-7
Algorithm Valid for Current Logical Position:
00b = Current logical position is not applicable to the encryption
algorithm validity or no volume is loaded.
10b = The encryption algorithm being specified is valid for writing
to the mounted volume at the current logical position.
MAXIMUM
UNAUTHENTICAT
ED KEY-
ASSOCIATED
DATA BYTES
6-7
0020h = Maximum length of 32 bytes of unauthenticated key-
associated data.
MAXIMUM
AUTHENTICATED
KEY-ASSOCIATED
DATA BYTES
8-9 000Ch = Maximum length of 12 bytes of authenticated key-
associated data.
KEY SIZE
10-11
0020h = 32-byte (256-bit) key size.
EAREM
12
0
Encryption algorithm records encryption mode
RDMC_C
12
1-3
Raw decryption mode control capabilities
SECURITY
ALGORITHM
CODE
20-23
00010014h = AES-GCM with a 16 byte MAC.
Reserved
All reserved bits must be 0.
3.31.7
Supported Key Formats page
The
SUPPORTED KEY FORMATS LIST
field shall contain a list of all of the key formats
that the device server supports for the Set Data Encryption page. Only format 00h is
supported.
Byte
Bits
7 6 5 4 3 2 1 0
0
(MSB)
1
PAGE CODE (0011h)
(LSB)
2
(MSB)
3
PAGE LENGTH (0001h)
(LSB)
Supported Key Formats list
4
The KEY field contains the key to be used to encrypt or decrypt data.
(00h)
5
The KEY field contains the key wrapped by the Device Server public key (02h)
3.31.8
Data Encryption Management Capabilities page
The Data Encryption Management Capabilities page describes which fields in the
Set Data Encryption page are supported by the device server.
Byte
Bits
7 6 5 4 3 2 1 0
0
(MSB)
1
PAGE CODE (0012h)
(LSB)
2
(MSB)
3
PAGE LENGTH (000Ch)
(LSB)
4
Reserved
LOCK_C
5
Reserved
CKOD_C CKORP_C CKORL_C
6
Reserved
Содержание LTO 4
Страница 1: ......