Description
iStorage’s smallest, lightest, fastest and most rugged FIPS-compliant encrypted portable SSD
The diskAshur M2 PIN authenticated, hardware encrypted SSD has a new, ultra-portable, rugged and sleek design,
incorporating the most advanced security attributes that iStorage is renowned for.
The diskAshur M2 encrypts data using FIPS PUB 197 validated, AES-XTS 256-bit hardware encryption, incorporating
a Common Criteria EAL5+ certified (hardware) secure microprocessor, which employs built-in physical protection
mechanisms designed to defend against external tampering, bypass physical attacks and more.
The drive features ultra-fast backwards-compatible USB 3.2 data transfer speeds and is available in capacities ranging
from 128GB to 2TB. The diskAshur M2 is lightweight, dust and waterproof (IP68 certified), shockproof (survives a drop
of 4m onto a concrete surface) and crush-proof (withstands the weight of a 2.7-ton vehicle), making it extremely rugged
and ultra-portable.
Key Features
Easy to use
Simply enter a 7-15 digit PIN to authenticate and use it as a standard portable SSD. When the drive is disconnected, all data is encrypted using AES-XTS 256-bit hardware encryption (no software required).
FIPS 140-3 Level 3 compliant, tamper proof & evident design
All data stored on the diskAshur M2 is encrypted using FIPS PUB 197 validated, AES-XTS 256-bit hardware encryption.
All components incorporated within the diskAshur M2 are completely covered by a layer of super tough epoxy resin, which is virtually impossible to remove without causing permanent damage to the components. The drive is also designed to be tamper-evident making it obvious to the user if it has been opened and tampered with.
Rugged, Shockproof & Crushproof
The diskAshur M2 is extremely rugged, surviving a drop of up to 4m onto a concrete surface. The drive is also crushproof and withstands the weight of a 2.7-ton vehicle.
No need to worry about spills
The drive’s IP68 accreditation means it will survive being submerged under 1.5m of water for 30 minutes and be deemed fit enough to withstand dust, dirt and sand.
Slim & sleek design
Lightweight and smaller than the size of a phone, making it ultra-portable.
Weighs 65 grams. (measurements without sleeve).
Wear resistant keypad
The onboard keypad is covered with a layer of polymer coating that protects the keys and hides key usage to avoid tipping off a potential hacker to commonly used keys.
Independent User and Admin PINs
Which makes it perfect for corporate and government deployment. If the user forgets their PIN, the drive can be unlocked using the Admin PIN. The Administrator can then allow the User to set a new User PIN.
User PIN enrolment
The Admin can set a restriction policy for the User PIN. This includes setting the minimum length of the PIN, as well as requiring the input of one or more ‘Special Characters’. The ‘Special Character’ functions as ‘SHIFT + digit’.
Transfer your files in seconds
Lightning fast backwards compatible USB 3.2 data transfer speeds.
Up to 370MB/s Read speeds
Up to 370MB/s Write speeds
One-time User recovery PIN
Admin configurable, extremely useful in situations where a user has forgotten their PIN, allowing the User to unlock the device and set a new User PIN.
Incorporates a Common Criteria EAL5+ certified (Hardware) secure microprocessor
Which enhances security through true random number generation and built-in cryptography. The data encryption key is protected by FIPS and Common Criteria validated wrapping algorithms.
- Offers ultimate security against hackers, detecting and responding to tampering with features such as:
Dedicated hardware for protection against SPA/
DPA/SEMA, DEMA attacks - Advanced protection against physical attacks,
including Active Shield, Enhance Protection
Object, CStack checker, Slope Detector and Parity
Errors - Environmental Protection Systems protecting
against voltage monitor, frequency monitor,
temperature monitor and light protection - Secure Memory Management/Access Protection
Read-only (write protect) – Dual Mode
Both the Admin and user can configure the diskAshur M2 as a read-only (write protect) drive. If configured by the Admin, the drive cannot be modified or disabled by the User, allowing the Admin to pre-provision a drive with pre-loaded content as read-only for the User.
OS & Host independent – works across any host and embedded systems
No software is required; the drive will work on any device with a USB port.
USB Type C and Type A connectivity (included)
Compatible with: MS Windows, macOS, Linux, Android, Chrome, Thin Clients, Zero Clients, Embedded Systems, Citrix and VMware
Bootable feature
Install an OS on the diskAshur M2 and boot directly from it.
Brute force hack defence mechanism
Intelligently programmed to protect against all forms of brute force attacks.
If the User PIN is entered incorrectly 10 consecutive times, the User PIN will be deleted and the drive can only be accessed by entering the Admin PIN which resets the User PIN. (Admin can change this from the default 10 incorrect PIN entries to 1-9, for the User only).
If the Admin PIN is entered incorrectly 10 consecutive times, all data, PINs and the encrypted encryption key will be lost forever.
Auto-lock
Automatically locks when unplugged from the host computer or when power to the USB port is turned off. It can also be set to automatically lock after a predetermined amount of time.
Self-destruct feature
Pre-program the diskAshur M2 with a self-destruct PIN, once entered, the data, encrypted encryption key and all PINs are deleted and rendered as lost forever.
Device reset feature
Deletes the encrypted encryption key, and all PINs and renders all data lost forever. The drive can then be redeployed which randomly generates a new encrypted encryption key, a process that can be repeated as many times as required.
Whitelisting on networks
Configured with a unique VID/PID and internal/external serial number with barcode, allowing easy integration into standard end-point management software (white-listing), to meet internal corporate requirements.
Customisation services available
Offering an in-house PIN configuration and laser-etching service whereby the diskAshur M2 sleeve or side of the device can be customised with your name, company name and/or logo, web/email address, phone number.