|
|
|
|
|
by theandrewbailey
3388 days ago
|
|
The idea is to always use your drive with encryption from the start, so that no "plaintext" data is ever written, ever. When your physical garbage collection happens, rekey or reformat. Depending on the drive, this is pretty easy. TCG OPAL drives are required to write encrypted data to the media 100% of the time. Seems that you can rekey the drive easily: https://github.com/Drive-Trust-Alliance/sedutil/wiki/PSID-Re... |
|