SCSI Commands: 44BSECURITY PROTOCOL OUT
Page
199
Field
Bytes
Bits
Description
KEY LENGTH
18-19
32 = Length of key, when included. If any other non-zero value,
then the device server shall terminate the command with
CHECK CONDITION status, with the sense key set to
ILLEGAL REQUEST, and the additional sense code set to
INVALID FIELD IN PARAMETER DATA.
KEY 20-51
If Encryption Mode is EXTERNAL or DISABLE and Decryption
Mode is DISABLE or RAW, then this field is not required.
If the Key field is missing and either Encryption Mode is ENCRYPT
or Decryption Mode is DECRYPT or MIXED, then the device
server shall terminate the command with CHECK CONDITION
status, with the sense key set to ILLEGAL REQUEST, and the
additional sense code set to INVALID FIELD IN PARAMETER
DATA.
KEY-
ASSOCIATED
DATA
DESCRIPTOR
S LIST
52-m
If the Encryption Mode is ENCRYPT, then this field should contain
one descriptor with twelve bytes of authenticated key-
associated data (A-KAD) and one descriptor with sixteen bytes
of unauthenticated key-associated data (U-KAD). (See
3.32.2.2 below.) If a descriptor is not included, then the device
server shall use a value of all zeroes for the key-associated
data that would have been supplied by the missing descriptor.
If the Encryption Mode is EXTERNAL, then this field shall contain
one metadata key-associated data (M-KAD) descriptor with 64
bytes of metadata. If it is not present, then the device server
shall terminate the command with CHECK CONDITION status,
with the sense key set to ILLEGAL REQUEST, and the
additional sense code set to INVALID FIELD IN PARAMETER
DATA.
If Encryption Mode is DISABLE, then this field must be excluded.
If it is present, then the device server shall terminate the
command with CHECK CONDITION status, with the sense key
set to ILLEGAL REQUEST, and the additional sense code set
to INVALID FIELD IN PARAMETER DATA.
3.32.2.2
Key Field Format with Key Format set to 02h
If the Key Format field is set to 02h, the KEY field consists of the encrypted key,
a label and a signature.
Byte
Bits
7 6 5 4 3 2 1 0
0
(MSB)
1
PARAMETER SET
(LSB)
2
(MSB)
3
LABEL LENGTH
(LSB)
4
(MSB)
N
LABEL
(LSB)
N+1
(MSB)
N+2
WRAPPED KEY LENGTH
(LSB)
N+3
(MSB)
M
WRAPPED KEY
(LSB)
M+1
(MSB)
M+2
SIGNATURE LENGTH (0000h)
(LSB)
Содержание LTO 4
Страница 1: ......