|
Server : Apache/2.4.62 System : FreeBSD fbsdweb2.web.rcn.net 14.1-RELEASE FreeBSD 14.1-RELEASE releng/14.1-n267679-10e31f0946d8 GENERIC amd64 User : www ( 80) PHP Version : 8.3.8 Disable Function : NONE Directory : /domains/ap.belleisle/INFOSEC/stds/ |
Upload File : |
<HTML> <HEAD> <TITLE>NISPOM 8-306 Matrix</TITLE> <META NAME="description" CONTENT="Cerberus Systems, Inc. develops, manufactures and markets Windows� cryptosystems designed to meet or exceed level 1 of FIPS PUB 140-1 with DOD 5220.22-M disk data recovery countermeasures."> <META NAME="keywords" CONTENT="168-bit keys, access control, ANSI X9.17, computer security, confidentiality, crypto, cryptography, cryptographic, cryptology, cryptosystem, Data Encryption Standard, data security, DES, disk encryption, DOD 5200.28-STD, DOD 5220.22-M, encrypt, encryption, Federal Information Processing Standards, file encryption, FIPS, FIPS 46-2, FIPS 74, FIPS 81, FIPS 140-1, FIPS 180-1, FIPS 186, INFOSEC, integrity, key, NBS Special Publication 500-20, NCSC TG-25, passphrase, password, personal, privacy, private key, Secure Hash Standard, security, Security Requirements for Cryptographic Modules, security software, sensitive-but-unclassified, sensitive information, SHA, SHA1, SHS, software, standards, triple-DES, Windows�."> </HEAD> <BODY TOPMARGIN="0" LEFTMARGIN="0" MARGINWIDTH="0" MARGINHEIGHT="0" BGCOLOR="#FFFFFF" TEXT="#000000" LINK="#009966" ALINK="#FF0000" VLINK="#009966"> <BASEFONT SIZE=2 FACE="Arial,Helv,Helvetica"> <TABLE ALIGN=LEFT BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=12 WIDTH=640> <TR> <!-- LEFT MARGIN STRIP --> <TD BGCOLOR="#336666" ALIGN=CENTER VALIGN=TOP> <FONT SIZE=1> <a href="../../default.htm"><IMG SRC="../images/web_icon.gif" ALT="CERBERUS HOME ICON" WIDTH=72 HEIGHT=72 BORDER=0 VSPACE=2><br><b><i>CERBERUS</i></b></a> <P><a href="../index.htm""><IMG SRC="../images/needs.gif" ALT="THE NEED" WIDTH=90 HEIGHT=30 BORDER=0></a><br> <a href="../privacy.htm">Vulnerabilities</a> <a href="../threats.htm">Threats</a> <a href="../forensic.htm">Countermeasures</a> <P><a href="../products/index.htm""><IMG SRC="../images/products.gif" ALT="PRODUCTS" WIDTH=90 HEIGHT=30 BORDER=0></a><br> <a href="../products/docusec.htm">Document Security</a> <P><a href="index.htm"><IMG SRC="../images/standard.gif" ALT="STANDARDS" WIDTH=90 HEIGHT=30 BORDER=0></a><br> <a href="fip140-1.htm">FIPS PUB 140-1</a><br> <a href="sanitize.htm"><FONT COLOR="#00CC99">DOD 5220.22-M</FONT></a><br> <a href="ncsctg25.htm">NCSC TG-25</a> <br> <a href="fip81.htm">FIPS PUB 81</a> <br> <a href="fip180-1.htm">FIPS PUB 180-1</a><br> <a href="d520028.htm">DOD 5200.28-STD</a> <P><a href="../tutorial/index.htm"><IMG SRC="../images/tutorial.gif" ALT="TUTORIALS" WIDTH=90 HEIGHT=30 BORDER=0></a><br> <a href="../tutorial/winfosec.htm">INFOSEC</a><br> <a href="../tutorial/keys.htm">Cryptosystems</a><br> <a href="../tutorial/phrases.htm">Passphrases</a><br> <a href="../tutorial/leaks.htm">Windows� Leaks</a><br> <a href="../tutorial/system.htm">System Settings</a> <P><a href="../download/index.htm"><IMG SRC="../images/download.gif" ALT="DOWNLOADS" WIDTH=90 HEIGHT=30 BORDER=0></a><br> <P><HR WIDTH=84> <P><a href="mailto:[email protected]">QUESTIONS? <br><IMG SRC="../images/email2.gif" ALT="E-MAIL" WIDTH=61 HEIGHT=31 BORDER=0></a><br> <P><br><IMG SRC="../images/amex_ok.gif" ALT="AMEX WELCOME" WIDTH=51 HEIGHT=68 BORDER=0> </FONT> </TD> <!-- END LEFT MARGIN STRIP --> <!-- MAIN SECTION --> <TD ALIGN=LEFT VALIGN=TOP> <!-- Title Bar --> <TABLE BORDER=0 CELLSPACING=0 CELLPADDING=0 WIDTH=500> <TR><TD> <!-- Right-justified Logotype --> <TABLE ALIGN=RIGHT BORDER=0 CELLSPACING=0 CELLPADDING=0> <TR><TD><FONT COLOR="#006633" SIZE=3><B><I>CERBERUS <FONT SIZE=1>SYSTEMS, INC.</FONT></I></B></FONT></TD></TR><TR><TD ALIGN=CENTER><FONT COLOR="#999933" SIZE=1><B><I> <!--forensic software countermeasures--> <!--INFORMATION SECURITY TOOLS--> <!--INFOSEC for Personal Computers--> <!--INFOSEC Products for Windows®--> <!--INFOSEC Tools for PCs & Laptops--> <!--personal information security tools--> Windows®-compatible encryption </I></B></FONT></TD></TR> </TABLE> <!-- End Logotype --> </TD></TR> <TR ALIGN=CENTER><TD WIDTH=490> <!-- Centered Page-Title --> <TABLE BORDER=0 CELLSPACING=0 CELLPADDING=10> <TR><TD ALIGN=CENTER><FONT COLOR="#CC3300" SIZE=4><B> <!-- Title Text--> DOD 5220.22-M<BR>CLEARING <FONT SIZE=2>AND</FONT> SANITIZING<BR>MATRIX<BR><FONT SIZE=2>[ NISPOM 8-306 ]</FONT> <!-- End Title Text --> </B></FONT></TD></TR> </TABLE> <!-- End Page-Title --> </TD></TR></TABLE> <!-- End Title Bar --> <!-- Content --> <FONT SIZE=2> <CENTER><TABLE BGCOLOR="#CCCCCC" BORDER=1> <tr><td align=center><b>MEDIA</b></td><td align=center><b>CLEAR</b></td><td align=center><b>SANITIZE</b></td></tr> <tr><td align=center><b>Magnetic Tape</b></td></tr> <tr><td>Type I</td><td>a or b</td><td>a, b, or m</td></tr> <tr><td>Type II</td><td>a or b</td><td>b or m</td></tr> <tr><td>Type III</td><td>a or b</td><td>m</td></tr> <tr><td align=center><b>Magnetic Disk</b></td></tr> <tr><td>Bernoullis</td><td>a, b, or <b>c</b></td><td>m</td></tr> <tr><td>Floppies</td><td>a, b, or <b>c</b></td><td>m</td></tr> <tr><td>Non-Removable Rigid Disk</td><td><b>c</b></td><td>a, b, <b>d</b>, or m</td></tr> <tr><td>Removable Rigid Disk</td><td>a, b, or <b>c</b></td><td>a, b, <b>d</b>, or m</td></tr> <tr><td align=center><b>Optical Disk</b></td></tr> <tr><td>Read Many, Write Many</td><td>c</td><td>m</td></tr> <tr><td>Read Only</td><td>m, n</td></tr> <tr><td>Write Once, Read Many (Worm)</td><td>m, n</td></tr> <tr><td align=center><b>Memory</b></td></tr> <tr><td>Dynamic Random Access Memory (DRAM)</td><td><b>c</b> or g</td><td><b>c</b>, g, or m</td></tr> <tr><td>Electronically Alterable PROM (EAPROM)</td><td>i</td><td>j or m</td></tr> <tr><td>Electronically Erasable PROM (EEPROM)</td><td>i</td><td>h or m</td></tr> <tr><td>Erasable Programmable (ROM (EPROM)</td><td>k</td><td>l then c, or m</td></tr> <tr><td>Flash EPROM (FEPROM)</td><td>i</td><td>c then i, or m</td></tr> <tr><td>Programmable ROM (PROM)</td><td>c</td><td>m</td></tr> <tr><td>Magnetic Bubble Memory</td><td>c</td><td>a, b, c, or m</td></tr> <tr><td>Magnetic Core Memory</td><td>c</td><td>a, b, e, or m</td></tr> <tr><td>Magnetic Plated Wire</td><td>c</td><td>c and f, or m</td></tr> <tr><td>Magnetic Resistive Memory</td><td>c</td><td>m</td></tr> <tr><td>Nonvolatile RAM (NOVRAM)</td><td>c or g</td><td>c, g, or m</td></tr> <tr><td>Read Only Memory ROM</td><td>m</td></tr> <tr><td>Static Random Access Memory (SRAM)</td><td><b>c</b> or g</td><td><b>c</b> and f, g, or m</td></tr> <tr><td align=center><b>Equipment</b></td><tr> <tr><td>Cathode Ray Tube (CRT)</td><td>g</td><td>q</td></tr> <tr><td align=center><b>Printers</b></td><tr> <tr><td>Impact</td><td>g</td><td>p then g</td></tr> <tr><td>Laser</td><td>g</td><td>o then g</td></tr> </TABLE></CENTER> <p><br><b>Clearing and Sanitization Methods:</b> <BLOCKQUOTE> <p> a. Degauss with a Type I degausser. <p> b. Degauss with a Type II degausser. <p> <b>c. Overwrite all addressable locations with a single character.</b> <p> <b>d. Overwrite all addressable locations with a character, its complement, then a random character and verify.</b> THIS METHOD IS NOT APPROVED FOR SANITIZING MEDIA THAT CONTAINS TOP SECRET INFORMATION. <p> e. Overwrite all addressable locations with a character, its complement, then a random character. <p> f. Each overwrite must reside in memory for a period longer than the classified data resided. <p> g. Remove all power to include battery power. <p> h. Overwrite all locations with a random pattern, all locations with binary zeros, all locations with binary ones. <p> i. Perform a full chip erase as per manufacturer's data sheets. <p> j. Perform i above, then c above, a total of three times. <p> k. Perform an ultraviolet erase according to manufacturer's recommendation. <p> l. Perform k above, but increase time by a factor of three. <p> m. Destroy - Disintegrate, incinerate, pulverize, shred, or melt. <p> n. Destruction required only if classified information is contained. <p> o. Run five pages of unclassified text (font test acceptable). <p> p. Ribbons must be destroyed. Platens must be cleaned. <p> q. Inspect and/or test screen surface for evidence of burned-in information. If present, the cathode ray tube must be destroyed. </BLOCKQUOTE> </FONT> <!-- End Content ---> <!-- Standard Footer ---> <CENTER> <P><BR> <FONT SIZE=2 COLOR="#006633"><B><i> Cerberus Systems, Inc. develops, manufactures and markets<BR> software cryptosystems designed to level 1 of FIPS PUB 140-1<BR> with DOD 5220.22-M disk data recovery countermeasures. </i></B></FONT> <P><HR SIZE=1> <FONT SIZE=1 COLOR="#CC3300"> The Cerberus logo and the <i>...Security Manager</i> product names are trademarks of Cerberus Systems, Inc.<BR> © Copyright 1997-99, all rights reserved. </FONT> <HR SIZE=1> </CENTER> <!--- End Standard Footer ---> </TD> <!-- END MAIN SECTION --> <!-- PADDING CELL --> <TD> <!-- right margin = 2 x cellpadding --> </TD> <!-- END PADDING CELL --> </TR> </TABLE> </BODY> </HTML>