securewipe

Securely erases the flash memory contents permanently according to DoD 5220.22-M standards, and afterwards reinstalls the ICX device.
Syntax
securewipe [ 1pass | 3pass | 7pass ]
Command Default

3-pass secure wipe is the default.

Parameters
1pass
Overwrites all addressable locations with a random bit pattern.
3pass
Overwrites the previously stored data on hard disk or solid state disk drive storage areas with specific binary patterns repeatedly through three passes followed by verification.
7pass
Overwrites the previously stored data on hard disk or solid state disk drive storage areas with specific binary patterns repeatedly through seven passes followed by verification.
Modes

Privileged EXEC mode

Usage Guidelines

Only a user with Super User level privileges can perform secure wipe.

SSH and Telnet sessions cannot be used to perform secure wipe because prints are displayed only on the console.

Secure wipe is supported on the ICX 7550, ICX 7650, and ICX 7850 (router) devices only.

Powering down or power cycling the device during secure wipe may cause the device to fail and it will fail to reboot.

Powering down or power cycling the device during secure wipe may cause a failure to connect to the cloud because of the loss of the TPM keys.

If both the primary unified forwarding image (UFI) and the secondary UFI do not exist, secure wipe will be aborted.

If the UFI in flash memory is from a release prior to FastIron 09.0.10, secure wipe will be aborted.

If FIPS is enabled, it will be disabled forcibly and automatically during secure wipe.

Secure wipe is limited to the addressable range of memory.

Examples

The following example securely wipes the flash memory content and reinstalls the ICX device.

device#securewipe 7pass
**************************************************************
* SECUREWIPE Alert *
**************************************************************
* Please pay attention to the details listed below *
* 1. U-Boot params will be erased *
* 2. All flash partitions will be erased and loose all files *
* 3. FIPS will be disabled and related keys will be erased *
* 4. License and config files will be erased *
* 5. Only FI image, U-Boot and TPM keys will be restored. *
* 6. All warm memory contents will be erased *
* 7. Device may fail to boot and/or fail to connect cloud if *
* power cycled or power down during secure wipe process *
* 8. Performing secure wipe frequently may reduce the flash *
* life cycle *
**************************************************************
**************************************************************
* I have read the alert and SECUREWIPE can be performed now. *
* Please enter 'y' to confirm, 'n' to exit : *
**************************************************************
(enter 'y' or 'n'): y
Current booted partition: Primary, UFI used for secure wipe: Primary
Prerequisite check success,securewipe is processing....
********************************************
PLEASE WAIT SYSTEM WILL GO FOR RESTART....
********************************************
History
Release version Command history
09.0.10 This command was introduced.