What is the difference between "security-erase" and "security-erase-enhanced"? The man page entries for the two switches are virtually identical:
Erase (locked) drive, using password PWD (DANGEROUS). Password is given as an ASCII string and is padded with NULs to reach 32 bytes. The applicable drive password is selected with the --user-master switch.
Enhanced erase (locked) drive, using password PWD (DANGEROUS). Password is given as an ASCII string and is padded with NULs to reach 32 bytes. The applicable drive password is selected with the --user-master switch.
Just found the answer in the HDDerase.exe FAQ
Q: What is the difference between secure erase and enhanced secure erase?
A: Secure erase overwrites all user data areas with binary zeroes. Enhanced
secure erase writes predetermined data patterns (set by the manufacturer) to
all user data areas, including sectors that are no longer in use due to
reallocation. ***NOTE: the enhanced secure erase option is not supported by
all ATA drives.
I think the difference could be pretty vendor/device-specific. For example, in some SSD they seem to be doing exactly the same thing. In some others, which you may see that enhanced-erase takes shorter time than erase, enhanced-erase probably means a regeneration of some internal encryption key, while erase is more or less like a full disk trim.
Sign up for the SourceForge newsletter:
You seem to have CSS turned off.
Please don't fill out this field.