Keysight N9912A, N9913A, N9914A, N9915A, N9116A Security Features And Volatility Documentation

...
Page 1
Keysight Technologies FieldFox Handheld Analyzer
N9912A, N9913A, N9914A, N9915A, N9116A,
N9926A, N9927A, N9928A, N9935A, N9936A,
N9937A, N9938A
Security Features and Volatility Documentation
Page 2

Notices

© Keysight Technologies, Inc. 2008-2015
No part of this manual may be reproduced in any form or by any means (including electronic storage and retrieval or translation into a foreign language) without prior agreement and written consent from Keysight Technologies, Inc. as governed by United States and international copyright laws.
Trademark Acknowledgments
Manual Part Number
N9912-90008
Edition
Edition 1, May 29, 2015
Supersedes: April 24, 2014
Printed in USA/Malaysia
Published by: Keysight Technologies
1400 Fountaingrove Parkway Santa Rosa, CA 95403
Warranty
THE MATERIAL CONTAINED IN THIS DOCUMENT IS PROVIDED “AS IS,” AND IS SUBJECT TO BEING CHANGED, WITHOUT NOTICE, IN FUTURE EDITIONS. FURTHER, TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, KEYSIGHT DISCLAIMS ALL WARRANTIES, EITHER EXPRESS OR IMPLIED WITH REGARD TO THIS MANUAL AND ANY INFORMATION CONTAINED HEREIN, INCLUDING BUT NOT LIMITED TO THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. KEYSIGHT SHALL NOT BE LIABLE FOR ERRORS OR FOR INCIDENTAL OR CONSEQUENTIAL DAMAGES IN CONNECTION WITH THE FURNISHING, USE, OR PERFORMANCE OF THIS DOCUMENT OR ANY INFORMATION CONTAINED HEREIN. SHOULD KEYSIGHT AND THE USER HAVE A SEPARATE WRITTEN AGREEMENT WITH WARRANTY TERMS
COVERING THE MATERIAL IN THIS DOCUMENT THAT CONFLICT WITH THESE TERMS, THE WARRANTY TERMS IN THE SEPARATE AGREEMENT WILL CONTROL.
Technology Licenses
The hardware and/or software described in this document are furnished under a license and may be used or copied only in accordance with the terms of such license.
U.S. Government Rights
The Software is “commercial computer software,” as defined by Federal Acquisition Regulation (“FAR”) 2.101. Pursuant to FAR
12.212 and 27.405-3 and Department of Defense FAR Supplement (“DFARS”) 227.7202, the U.S. government acquires commercial computer software under the same terms by which the software is customarily provided to the public. Accordingly, Keysight provides the Software to U.S. government customers under its standard commercial license, which is embodied in its End User License Agreement (EULA), a copy of which can be found at
http://www.keysight.com/find/sweula
The license set forth in the EULA represents the exclusive authority by which the U.S. government may use, modify, distribute, or disclose the Software. The EULA and the license set forth therein, does not require or permit, among other things, that Keysight: (1) Furnish technical information related to commercial computer software or commercial computer software documentation that is not customarily provided to the public; or (2) Relinquish to, or otherwise provide, the government rights in excess of these rights customarily provided to the public to use, modify, reproduce, release, perform, display, or disclose commercial computer software or commercial computer software
documentation. No additional government requirements beyond those set forth in the EULA shall apply, except to the extent that those terms, rights, or licenses are explicitly required from all providers of commercial computer software pursuant to the FAR and the DFARS and are set forth specifically in writing elsewhere in the EULA. Keysight shall be under no obligation to update, revise or otherwise modify the Software. With respect to any technical data as defined by FAR 2.101, pursuant to FAR 12.211 and 27.404.2 and DFARS 227.7102, the U.S. government acquires no greater than Limited Rights as defined in FAR 27.401 or DFAR 227.7103-5 (c), as applicable in any technical data.
Safety Notices
A CAUTION notice denotes a hazard. It calls attention to an operating procedure, practice, or the like that, if not correctly performed or adhered to, could result in damage to the product or loss of important data. Do not proceed beyond a CAUTION notice until the indicated conditions are fully understood and met.
A WARNING notice denotes a hazard. It calls attention to an operating procedure, practice, or the like that, if not correctly performed or adhered to, could result in personal injury or death. Do not proceed beyond a WARNING notice until the indicated conditions are fully understood and met.
Page 3

Table of Contents

1. Contact Keysight Sales and Service Offices
2. Product Declassification and Security
Introduction. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 7
3. Terms and Definitions
Definitions . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9
4. System Components
5. Instrument Memory and Volatility Information
6. Memory Clearing, Sanitization and/or Removal Procedures
7. User and Remote Interface Security Measures
Screen and Annotation Blanking . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 21
USB/SD Card Removable Mass Storage Device Security . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 21
Remote Access Interfaces. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 22
Contents
8. Procedure for Declassifying a Faulty Instrument
3
Page 4
Contents
4
Page 5
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

1 Contact Keysight Sales and Service Offices

Assistance with test and measurements needs and information on finding a local Keysight office is available on the internet at,
http://www.keysight.com/find/assist. If you do not have access to the
internet, please contact your field engineer.
In any correspondence or telephone conversation, refer to the product by its model number and full serial number. With this information, the Keysight representative can determine whether your unit is still within its warranty period.
5
Page 6
Contact Keysight Sales and Service Offices
6 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 7
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

2 Product Declassification and Security

Model Number: N9912A, N9913A, N9914A, N9915A, N9116A, N9917A, N9918A, N9923A, N9923AN, N9925A, N9926A, N9927A, N9928A, N9935A, N9936A, N9937A, N9938A.
Product Name: FieldFox Handheld Analyzer

Introduction

This document describes instrument security features and the steps to declassify an instrument through memory sanitization or removal. For additional information please go to http://www.keysight.com/find/ad and click on the security instrument tab.
— Service Guide N9912A – (N9912-90003)
(http://cp.literature.keysight.com/litweb/pdf/N9912-90003.pdf)
— Service Guide N9923A, N9923AN – (N9923-90018)
(http://cp.literature.keysight.com/litweb/pdf/N9923-90018.pdf)
— Service Guide N9913A, N9914A, N9915A, N9916A, N9917A, N9918A,
N9925A, N9926A, N9927A, N9928A, N9935A, N9936A, N9937A, N9938A – (N9927-90003) (http://cp.literature.keysight.com/litweb/pdf/N9927-90003.pdf)
— User’s Guide N9912A – (N9912-90001)
(http://cp.literature.keysight.com/litweb/pdf/N9912-90001.pdf)
— User’s Guide N9923A – (N9923-90001)
(http://cp.literature.keysight.com/litweb/pdf/N9923-90001.pdf)
— User’s Guide N9913A, N9914A, N9915A, N9916A, N9917A, N9918A,
N9925A, N9926A, N9927A, N9928A, N9935A, N9936A, N9937A, N9938A – (N9927-90001) (http://cp.literature.keysight.com/litweb/pdf/N9927-90001.pdf)
7
Page 8
Product Declassification and Security Introduction
8 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 9
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

3 Terms and Definitions

Definitions

Clearing - Clearing is the process of eradicating the data on media before reusing the media so that the data can no longer be retrieved using the standard interfaces on the instrument. Clearing is typically used when the instrument is to remain in an environment with an acceptable level of protection.
Sanitization - Sanitization is the process of removing or eradicating stored data so that the data cannot be recovered using any known technology. Instrument sanitization is typically required when an instrument is moved from a secure to a non-secure environment such as when it is returned to the factory for calibration. (The instrument is declassified) Keysight memory sanitization procedures are designed for customers who need to meet the requirements specified by the US Defense Security Service (DSS). These requirements are outlined in the "Clearing and Sanitization Matrix" issued by the Cognizant Security Agency (CSA) and referenced in National Industrial Security Program Operating Manual (NISPOM) DoD 5220.22M ISL 01L-1 section 8-301.
Security erase - Security erase is a term that is used to refer to either the clearing or sanitization features of Keysight instruments.
Instrument declassification - A term that refers to procedures that must be undertaken before an instrument can be removed from a secure environment such as is the case when the instrument is returned for calibration. Declassification procedures will include memory sanitization and or memory removal. Keysight declassification procedures are designed to meet the requirements specified by the DSS NISPOM security document (DoD 5220.22M chapter 8).
9
Page 10
Terms and Definitions Definitions
10 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 11
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

4 System Components

Product/System includes the following components:
Model number Name Description Reference/Remarks
N9912A FieldFox Handheld
Analyzer
N9913A FieldFox Handheld
Analyzer
N9914A FieldFox Handheld
Analyzer
N9915A FieldFox Handheld
Analyzer
N9916A FieldFox Handheld
Analyzer
N9917A FieldFox Handheld
Analyzer
N9918A FieldFox Handheld
Analyzer
N9923A FieldFox Handheld
Analyzer
N9925A FieldFox Handheld
Analyzer
N9926A FieldFox Handheld
Analyzer
N9927A FieldFox Handheld
Analyzer
Handheld Cable and Antenna Analyzer Volatile and Non volatile
memory on SOM board, system board and RF board
Vector Network Analyzer and Spectrum Analyzer
Vector Network Analyzer and Spectrum Analyzer
Vector Network Analyzer and Spectrum Analyzer
Vector Network Analyzer and Spectrum Analyzer
Vector Network Analyzer and Spectrum Analyzer
Vector Network Analyzer and Spectrum Analyzer
Vector Network Analyzer and Cable Tester Volatile and Non volatile
Vector Network Analyzer Volatile and Non volatile
Vector Network Analyzer Volatile and Non volatile
Vector Network Analyzer Volatile and Non volatile
Volatile and Non volatile memory on SOM board, system board and RF board
Volatile and Non volatile memory on SOM board, system board and RF board
Volatile and Non volatile memory on SOM board, system board and RF board
Volatile and Non volatile memory on SOM board, system board and RF board
Volatile and Non volatile memory on SOM board, system board and RF board
Volatile and Non volatile memory on SOM board, system board and RF board
memory on SOM board, system board and RF board
memory on SOM board, system board and RF board
memory on SOM board, system board and RF board
memory on SOM board, system board and RF board
11
Page 12
System Components
Model number Name Description Reference/Remarks
N9928A FieldFox Handheld
Analyzer
N9935A FieldFox Handheld
Analyzer
N9936A FieldFox Handheld
Analyzer
N9937A FieldFox Handheld
Analyzer
N9938A FieldFox Handheld
Analyzer
Vector Network Analyzer Volatile and Non volatile
memory on SOM board, system board and RF board
Spectrum Analyzer Volatile and Non volatile
memory on SOM board, system board and RF board
Spectrum Analyzer Volatile and Non volatile
memory on SOM board, system board and RF board
Spectrum Analyzer Volatile and Non volatile
memory on SOM board, system board and RF board
Spectrum Analyzer Volatile and Non volatile
memory on SOM board, system board and RF board
12 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 13
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

5 Instrument Memory and Volatility Information

Table 5-1 Summary of instrument memory - base instrument
Memory Type and Size
Flash memory (main memory), 64 MB
Flash memory (microSD), 4 GB
Purpose/Contents Data Input
Is Memory user
accessible as a mass
storage device?
Writable During
Normal Operation?
Data Retained When
Powered Off?
Yes Yes Yes Fac tory default s etting
and,
User saved data
Yes Yes Yes Vector Network
Analyzer and Spectrum Analyzer
Method
Volatile and Non volatile memory on SOM board, system board and RF board
Volatile and Non volatile memory on SOM board, system board and RF board
Location in Instrument and Remarks
SOM board. Divided into three partitions: Keysight (42 Mb), FactoryData (2 Mb) and UserData (20 Mb).
Only the UserData partition is accessible by the user. System board
4GB microSD is only used in FieldFox model N9913A, N9914A, N9915A, N9916A, N9917A, N9918A, N9925A, N9926A, N9927A, N9928A, N9935A, N9936A, N9937A, N9938A
Sanitization Procedure
Keysight and Factory Data are not user accessible.
User Data: Memory erase procedure
User Data: Memory erase procedure
13
UserData on internal flash (64 MB flash memory) is not available when microSD flash memory is used
Page 14
Instrument Memory and Volatility Information
Table 5-1 Summary of instrument memory - base instrument
Memory Type and Size
RAM, volatile memory, 128 MB
Flash memory, 32 Kb and volatile memory 1 Kb Flash memory, 128 bytes
Flash memory, 16 Kb, and volatile memory, 2 Kb Flash memory, 1Kb
Purpose/Contents Data Input
Is Memory user
accessible as a mass
storage device?
Writable During
Normal Operation?
Data Retained When
Powered Off?
Yes Yes No Vector Network
Analyzer and Spectrum Analyzer
No No Yes System monitor
micro-controller.
No No Yes PCA identification and
revision information.
No No Yes Front panel interface
board micro-controller.
No No Yes Vector Network
Analyzer and Spectrum Analyzer
Method
Firmware operating memory
Factory default setting
Factory default setting
Factory default setting
Factory default setting
Location in Instrument and Remarks
SOM board External power and
System board Not writable by the
System board and RF board
Each PCA has an ID EPROM that stores PCA identification and revision information
Front panel interface board.
Main battery Not writable by the
Sanitization Procedure
main battery both removed
user
Not writable by the user
Not writable by the user
user
14 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 15
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation
6 Memory Clearing, Sanitization and/or Removal
Procedures
This section explains how to clear, sanitize, and remove memory from you instrument for all memory that can be written to during normal operation and for which the clearing and sanitization procedure is more than trivial such as rebooting your instrument.
Table 6-1 64 MB Flash Memory
Description and purpose
Size
Memory clearing
Memory sanitization
M e m o r y r e m o v a l
Write protecting
Memory validation
It is divided into three partitions: Keysight (42 Mb), FactoryData (2 Mb) and UserData (20 Mb). Only the UserData partition is accessible by the user.
64 MB
Memory Erase function
The following process completely clears all user accessible memory on the FieldFox instrument. This process requires firmware revision A.03.02 or later.
— Press the following keys:
1. System(7)
2. Service Diagnostics
3. Advanced
4. Erase User Data
5. Confirm Erase
6. Wait for the instrument to reboot and begin normal operation.
The process will completely erase the UserData flash memory partition and reboot the instrument. When the reboot is completed, the instrument will be ready for normal operation.
— Remove the main battery and external power from the FieldFox
instrument for at least two minutes. This will erase the volatile RAM on the SOM board.
This memory can not be removed without damaging the instrument
N/A
See Remarks
15
Page 16
Memory Clearing, Sanitization and/or Removal Procedures
Table 6-1 64 MB Flash Memory
Description and purpose
Remarks
It is divided into three partitions: Keysight (42 Mb), FactoryData (2 Mb) and UserData (20 Mb). Only the UserData partition is accessible by the user.
Notes on the process for erasing the UserData flash memory partition
There are two basic types of files in the UserData partition. One type is "system" files that are required for normal operation of the firmware. When the firmware finds one or more of these "system" files missing at boot up, default versions of these "system" files are written into the partition. Some of these "system" files may be modified by the user. The second type of files result from actions by the user (saving traces, saving screen captures, saving state files, etc.).
When the UserData partition is cleared, all files are removed from the partition. When the instrument re-boots, the firmware writes default versions of "system" files that are missing. Thus, clearing the UserData partition does not permanently interfere with normal operation of the instrument.
There is no "full chip erase" function available on the memory chips used for the flash memory on the SOM board.
The lowest level erase available on the flash memory is the sector erase. A sector erase sets all bytes within a given sector to FF (all one's).
The Erase User Data function does the following:
— Performs a sector erase on all sectors in the UserData partition.
— Writes zeros into all bytes in the UserData partition.
— Performs a sector erase on all sectors in the UserData partition.
— The instrument is re-booted
16 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 17
Memory Clearing, Sanitization and/or Removal Procedures
Table 6-2 4 GB Internal microSD Card
Description and purpose
Size
Memory clearing
Memory sanitization
Stores Operating System, Application Firmware and some User Data. Only the User Data is accessible by the user
4 GB
The following process completely clears all user accessible data on the FieldFox instrument. This process requires firmware revision A.03.02 or later.
Press the following keys:
1. System(7)
2. Service Diagnostics
3. Advanced
4. Erase User Data
5. Confirm Erase
Wait for the instrument to reboot and begin normal operation.
The process will completely erase the UserData on the 4GB Internal microSD Card and reboot the instrument. When the reboot is completed, the instrument will be ready for normal operation. The following process completely clears all user accessible memory on the FieldFox instrument. This process requires firmware revision A.03.02 or later.
Press the following keys:
M e m o r y r e m o v a l
Write protecting
Memory validation
Remarks
1. System(7)
2. Service Diagnostics
3. Advanced
4. Erase User Data
5. Confirm Erase
Wait for the instrument to reboot and begin normal operation.
The process will completely erase the Data on the 4GB Internal microSD Card and reboot the instrument. When the reboot is completed, the instrument will be ready for normal operation.
This memory can not be removed without damaging the instrument
N/A
N/A
4GB microSD is only used in FieldFox model N9913A, N9914A, N9915A, N9916A, N9917A, N9918A, N9925A, N9926A, N9927A, N9928A, N9935A, N9936A, N9937A, N9938A
UserData on internal flash (64 MB flash memory) is not available when microSD flash memory is used.
Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation 17
Page 18
Memory Clearing, Sanitization and/or Removal Procedures
Table 6-3 128 MB RAM
Description and purpose
Size
Memory clearing
Memory sanitization
M e m o r y r e m o v a l
Write protecting
Memory validation
Remarks
Firmware operating memory
128 GB
External power and main battery removed
External power and main battery removed
This memory can not be removed without damaging the instrument
N/A
N/A
Table 6-4 System Board Micro-Controller, 32 Kb Flash Memory, 1
Kb Volatile Memory
Description and purpose
Size
Memory clearing
Memory sanitization
M e m o r y r e m o v a l
Write protecting
Memory validation
Remarks
For System Board System Monitor Micor-Controller
32 Kb Flash Memory, 1 Kb Volatile Memory
Not writable by the user
N/A
This memory can not be removed without damaging the instrument
N/A
N/A
Table 6-5 EPROM 128 Bytes
Description and purpose
Size
Memory clearing
Memory sanitization
M e m o r y r e m o v a l
Write protecting
Memory validation
18 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
PCA identification and revision information
128 bytes
Not writable by the user
N/A
This memory can not be removed without damaging the instrument
N/A
N/A
Page 19
Memory Clearing, Sanitization and/or Removal Procedures
Table 6-5 EPROM 128 Bytes
Description and purpose
Remarks
PCA identification and revision information
Table 6-6 Front Panel Interface Board Micro-Controller, 16 Kb Flash
Memory, 2 Kb Volatile Memory
Description and purpose
Size
Memory clearing
Memory sanitization
M e m o r y r e m o v a l
Write protecting
Memory validation
Remarks
Front panel interface board micro-controller
16 Kb Flash Memory, 2 Kb Volatile Memory
Not writable by the user
N/A
This memory can not be removed without damaging the instrument
N/A
N/A
Table 6-7 Flash Memory on Main Battery, 1 Kb
Description and purpose
Size
Memory clearing
Memory sanitization
M e m o r y r e m o v a l
Write protecting
Memory validation
Remarks
Smart battery, to maintain information about battery usage and current condition
1 Kb
Not writable by the user
N/A
This memory can not be removed without damaging the instrument
N/A
N/A
Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation 19
Page 20
Memory Clearing, Sanitization and/or Removal Procedures
20 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 21
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

7 User and Remote Interface Security Measures

Screen and Annotation Blanking

For security reasons, frequency information can be prevented from appearing on the FieldFox by following below procedure. The same information is available in the User’s Guide.
How to set Security Level
1. Press System 7
2. Then System Configuration
3. Then Security Level
4. Then choose from the following:
— None All frequency settings are visible.
— High Frequency information is blanked from the following:
— Display annotation
— Softkeys
— Marker display and marker table
— Calibration properties
— All settings tables
— Limit line tables
— All saved .png files
Any of the following will re-display frequency information:
— Set to None, Preset, Mode Preset, or FieldFox restart.

USB/SD Card Removable Mass Storage Device Security

There is no capability to control removable USB/SD card mass storage permissions from the FieldFox user interface at this time. The customer is responsible for managing removable storage media in secure locations.
21
Page 22
User and Remote Interface Security Measures Screen and Annotation Blanking

Remote Access Interfaces

The user is responsible for providing security for the LAN port for remote access by controlling physical access to the LAN port. The LAN port must be controlled because they provide access to all user settings, user states and the display image.
The LAN port provides the following services:
—ftp
—sockets
22 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Page 23
Keysight Technologies FieldFox Handheld Analzers N991xA, N992xA, and N993xA
Security Features and Volatility Documentation

8 Procedure for Declassifying a Faulty Instrument

If the instrument is not functioning and you are unable to use the security functions to clear the User Data, you must physically remove the SOM board and discard and destroy it. And send the instrument to a repair facility. If the repair facility determines that a new SOM board fixes the problem and the instrument is still under warranty, you will not be charged for the new board. If they determine that the failure was caused by something other than the SOM board, you will be charged for the new board even though the instrument is still under warranty.
The 4GB microSD resides in System Board. If the instrument is not functioning and you are unable to use the security functions to clear the User Data, you must physically remove the microSD from the System Board and keep it within secure environment. And send the instrument to a repair facility. If the repair facility determines that a new System Board fixes the problem and the instrument is still under warranty, you will not be charged for the new board. If they determine that the failure was caused by something other than the System Board, you will be charged for the new board even though the instrument is still under warranty.
The customer is responsible for removing and replacing the storage media assemblies at their secure location. Refer to the service guide for assembly replacement procedures.
23
Page 24
Procedure for Declassifying a Faulty Instrument
24 Keysight N991xA/N992xA/N993xA Security Features and Volatility Documentation
Loading...