Skip Links

Network World

  • Social Web 
  • Email 
  • Close

(Comma separation for multiple addresses)
Your Message:

Opal promising interoperable disk-drive security

By Ellen Messmer , Network World , 01/23/2009
  • Share/Email
  • Tweet This
  • Comment
  • Print

Next week the Trusted Computing Group, the organization that fosters vendor-neutral standards for the computing industry, is expected to unveil its new Opal security specification for disk drives.

The Opal Security Subsystem Class Specification 1.0, as it's officially called, offers a set of mechanisms and protocols for disk-drive encryption, authentication, configuration and policy management. When implemented in disk drives and supporting client and security-management software, Opal would provide IT managers with flexibility and interoperability in managing computers using Opal.

In theory, Opal-based security management software from any vendor could be used with any Opal-based disk drive, regardless of the manufacturer. At least that's the idea, according to industry proponents backing Opal.

"This is a joint effort to come up with a security specification," says David James, vice president of advanced product engineering at Fujitsu, which expects to have Opal support in all of its Notebook drives, both the 5400 rpm and 7200 rpm, during the second quarter of this year.

James says Seagate and Hitachi are also the disk-drive manufacturers working on Opal, as well as a contingent of software vendors, including Wave Systems, McAfee, and Microsoft.

"The basic objective is how do we embed security in the drive, to have encryption and authentication, and do it in a standardized way so it works no matter what drive you have," says Lark Allen, vice president of corporate development at Wave Systems.

Opal provides a way to make sure encryption keys never leave the disk drive and also aren't vulnerable to Windows-based attacks that have been demonstrated in the past, he says. Opal itself is not tied to any operating system and is "OS independent," he adds.

Wave Systems and Fujitsu have demonstrated that Fujitsu's Opal implementations work with the Opal code supported by Wave Systems Trusted Drive Manager software. Much more regarding vendor support and interoperability testing is expected to be heard next week as the Trusted Computing Group shows of Opal.

  • Share/Email
  • Tweet This
  • Comment
  • Print

Comments (1)
Login
Forgot your account info?

This is a good long-waited thing for those who travel with laptopsBy Frequent Traveller on January 23, 2009, 9:20 pmThis is a good long-waited thing for those who travel with laptops (does anybody traveling without laptop in XXI century?)

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed