Print
login Account
Search

Drive Erase Utility for the Resetting the Cryptographic Key and the Erasing the Solid State Drive - ThinkPad

Name
Operating System
Version
Released
Download now
ThinkPad Drive Erase Utility for the Resetting the Cryptographic Key and the Erasing the Solid State Drive (Bootable CD)

228.4 MB
DOS
EFI Shell
1.02
1/28/2014
ThinkPad Drive Erase Utility for the Resetting the Cryptographic Key and the Erasing the Solid State Drive (Floppy)

70.3 KB
DOS
EFI Shell
1.02
1/28/2014
README for ThinkPad Drive Erase Utility for the Resetting the Cryptographic Key and the Erasing the Solid State Drive

11.0 KB
DOS
EFI Shell
1.02
1/28/2014

This Drive Erase Utility for the Resetting the Cryptographic Key and the Erasing the Solid State Drive resets the Cryptographic Key of Full Disk Encryption(FDE) supported hard drives(HDD) and erases the Solid State Drive(SSD)


Note:

 

Contents
Supported ThinkPad Systems
Supported Operating System
Summary of changes
Note
Installation instructions
How to use DOS Utility
Determining version installed

 

Supported ThinkPad Systems
  • ThinkPad Edge E120, E125
  • ThinkPad Edge E220s
  • ThinkPad Edge E320, E325
  • ThinkPad Edge E420, E420s, E425
  • ThinkPad Edge E520, E525
  • ThinkPad Edge S430
  • ThinkPad Helix, ThinkPad X1 Helix, X1 Helix 3G
  • ThinkPad L430, L530
  • ThinkPad S430, S531, S5-S531
  • ThinkPad T420, T420i, T420s, T420si, T430, T430i, T430s, T430si, T431s, T440, T440p, T440s
  • ThinkPad T520, T520i, T530, T530i, T540p
  • ThinkPad Twist S230u
  • ThinkPad W520, W530, W540
  • ThinkPad X1, X1 Carbon (Type 34xx)
  • ThinkPad X1 Carbon(Machine Types:20A7,20A8)
  • ThinkPad X120e, X121e, X130e, X131e
  • ThinkPad X220, X220i, X220 Tablet, X220i Tablet, X230, X230i, X230 Tablet, X230i Tablet, X230s, X240, X240s

 

Supported Operating System
  • DOS

 

Summary of Changes

Where:

  • [Important] Important update
  • (New) New function or enhancement
  • (Fix) Correction to existing function

Version 1.02

  • (New) Added support for EFI shell.
  • (New) Added support of ThinkPad Helix,ThinkPad X1 Helix,X1 Helix 3G.
  • (New) Added support of ThinkPad S531,S5-S531.
  • (New) Added support of ThinkPad T431s,T440,T440p,T440s.
  • (New) Added support of ThinkPad T540p.
  • (New) Added support of ThinkPad W540.
  • (New) Added support of ThinkPad Twist S230u.
  • (New) Added support of ThinkPad X230s,X240,X240s.

Version 1.01

  • (New) Added support of ThinkPad T430, T430i
  • (New) Added support of ThinkPad T430s, T430si
  • (New) Added support of ThinkPad T530, T530i
  • (New) Added support of ThinkPad W530
  • (New) Added support of ThinkPad X230, X230i, X230 Tablet, X230i Tablet
  • (New) Added support of ThinkPad X1 Carbon (Type 34xx)
  • (New) Added support of ThinkPad L430, L530
  • (New) Added support of ThinkPad S430, Edge S430
  • (New) Added support of ThinkPad X130e, X131e
  • (Fix) Corrected following BIOS build IDs and versions. 8PET29WW/1.11, 8RET29WW/1.11, 8SET29WW/1.11 Please refer to the Notes section above.
  • (New) Added support of ThinkPad X1
  • (New) Added support of ThinkPad X120e, X121e
  • (New) Added support of ThinkPad Edge E120, E125
  • (New) Added support of ThinkPad Edge E320, E325
  • (New) Added support of ThinkPad Edge E420, E425, E520, E525
  • (New) Added support of ThinkPad Edge E420s, E220s
  • (New) Added support of ThinkPad W520
  • (New) Added support of ThinkPad T420s, T420si
  • (Fix) Corrected following BIOS build IDs and versions.
    8PET29WW/1.11, 8RET29WW/1.11, 8SET29WW/1.11
    Please refer to the Notes section above.

Version 1.00

  • (New) Added support of ThinkPad T520, T520i
  • (New) Initial release

 

Notes

[I M P O R T A N T]

  • FDE

    The FDE makes encryption to writing data to its disk and decryption for reading out from a disk. Without a same cryptographic key in an HDD, the data inside can not be read properly decoded. Once a new key is defined by reset, the previous key is deleted from the HDD and then the read and write operations are done with using the new key. This means the computer can not be booted from the HDD nor read data in the HDD after resetting a cryptographic key.

    The HDD itself makes a cryptographic key and manages it, but the ThinkPad computer does not store any cryptographic key information. Once a new cryptographic key is defined by doing the Resetting the Cryptographic Key, as there is no way to restore the previous key, recovery of the HDD data is IMPOSSIBLE.

    An HDD password will be deleted by resetting a cryptographic key.

  • SSD

    All the contents of the Solid State Drive will be erased in a minute, then the password will be deleted by this software.

After the Resetting the Cryptographic Key of FDE is done, you cannot boot your computer from the HDD nor read data in the HDD. The HDD itself makes a cryptographic key and manages it, but the ThinkPad computer does not store any cryptographic key information. Once a new cryptographic key is defined by doing the Resetting the Cryptographic Key, as there is no way to restore the previous key, recovery of the HDD data is impossible.

To use this software, the BIOS should support this software.
Make sure your ThinkPad BIOS/UEFI BIOS version is the following version or
higher:

(UEFI BIOS Build ID/Version for ThinkPad models)

  • 8OET25WW/1.09, 8PET29WW/1.11 for Edge E120, E125
  • 8NET26WW/1.10, 8SET29WW/1.11 for Edge E320, E325
  • 8HET36WW/1.18 for Edge E420, E425, E520, E525
  • 8JET36WW/1.18 for Edge E420s, E220s
  • 83ET60WW/1.30 for T420, T420i
  • 8CET45WW/1.25 for T420s, T420si
  • 8AET48WW/1.27 for T520, T520i
  • 8BET46WW/1.26 for W520
  • 8DET48WW/1.17 for X220, X220i, X220 Tablet, X220i Tablet
  • 8MET22WW/1.22 for X1
  • 8FET30WW/1.14 for X120e
  • 8QET24WW/1.08, 8RET29WW/1.11 for X121e

("|" indicates new entry and version corrected)

For the other support models, the initial version of UEFI BIOS supports this software.

Installation Instructions

Notes:

  • If your computer runs satisfactorily now, it may not be necessary to update the software. To determine if you should update the software, refer to the Determining Which Version is Installed section.
  • The tool enables or disables both menus at the same time.
How to use DOS Utility
Bootable CD/DVD
  1. Prepare a computer with an optical drive installed and a blank CD/DVD disc,
    and make sure the CD/DVD writing software is installed into the computer.
  2. Locate the file ending in ".ISO" that was downloaded, then double-click it.
    A writing software will open.
  3. Follow the instructions on the screen to finish writing and complete creating the bootable CD/DVD.
  4. Place the bootable CD/DVD in the optical drive of ThinkPad computer.
  5. Confirm the optical drive being a bootable device in BIOS Setup/Boot menu.
  6. Turn off the computer then turn on.
  7. Drive Erase Utility runs automatically. Then go to step 8 below.
DOS
  1. Prepare the DOS bootable USB memory.
  2. Unzip .ZIP file and extract DrvErase.exe file.
  3. Copy the DrvErase.exe to the USB memory.
  4. Attach the USB memory to the ThinkPad computer.
  5. Confirm the USB memory being a bootable device in BIOS Setup/Boot menu.
  6. Turn off the computer then turn it on.
  7. Refer to the "DrvErase.exe - command line option list" section below to run
    DrvErase.exe. Then go to step 8 below.
EFI Shell
  1. Prepare the USB memory which created EFI\BOOT folder.
  2. Unzip .ZIP file and extract BOOTX64.efi file.
  3. Copy the BOOTX64.efi to EFI\BOOT folder.
  4. Attach the USB memory to the ThinkPad computer.
  5. Confirm the USB memory key being a bootable device in BIOS Setup/Boot menu.
  6. Turn off the computer then turn it on.
  7. Drive Erase Utility runs automatically.
  8. Select a erase mode if requested.
    It is requested only when the selected drive supports multiple erase modes.
  9. Press 'Y' to continue.
  10. Press 'Y' to continue again.
  11. Remember a Request Key on the screen.
  12. Press Enter to restart.
  13. After restart, input the Request Key and press Enter.
  14. Press Enter to continue.
  15. Input an hard disk password(*) if installed.
  16. Wait for completion.
  17. After completion is displayed, press any key to restart.

*: An HDD/SSD password will be erased after completion.

DrvErase.exe - command line option list

  • Example: DrvErase /D:1 /M:2 /S
    /D:n Specify the target drive
    1. Internal HDD bay,
    2. Ultrabay,
    3. MSATA connection
      Example /D:1
  • /M:n Specify the erase mode
    1. Normal erase (for SSD only)
    2. Resetting Cryptographic Key
      Example /M:2
  • /S Suppress confirmation
  • /E Exit without restart
  • /? Show help messages
 
Determining version installed


Run DrvErase.exe with no parameter, its version information is displayed on the screen.