TCG Opal 2.0 enabled drives, cloning & reading data

Elixer

Lifer
May 7, 2002
10,371
762
126
I am curious, if you enabled TCG on a SSD in a laptop, and you clone said drive on desktop (since the laptop don't have 2 native SATA ports) would it actually work once you replace the new SSD with the old one ?

If the desktop's BIOS isn't TCG aware, and you do a raw clone, it would be all garbage data would it not ?

Come to think of it, since the key pair is stored on the SSD, and if the SSD can't read the key anymore (for whatever reason), you would end up with a useless device right, and you would have no hope at all at getting any data back. (Though, I guess you might be able to crack TCG using brute force, but that could take forever).
 

smakme7757

Golden Member
Nov 20, 2010
1,487
1
81
If the drive is decrypted upon boot then you can copy data off it with what ever software you want.

If it's not decrypted you get encrypted data. If you don't then there is something seriously wrong with the implementation of the encryption!

It's highly unlikely that the SSD would "forget" the key. If that would happen your data would be lost. That's why an encrypted backup is still important.

Bruteforce just isn't feasible . Not if the password is decent.
 
Last edited: