iStorage
datAshur PRO2
datAshur PRO2
Couldn't load pickup availability
The world's only FIPS 140-2 Level 3 USB flash drive with PIN authentication, hardware encryption and a Secure Microprocessor with Common Criteria EAL5+ certification
The iStorage datAshur PRO2 USB 3.2 Gen 1 Flash Drive is a PIN authenticated, AES-XTS 256-bit hardware encrypted flash drive that securely encrypts, stores and protects data to military-grade standards.
The datAshur PRO² helps you secure valuable and sensitive data and comply with strict data protection and confidentiality regulations and guidelines, such as GDPR, HIPAA, SOX, CCPA, DORA and more.
All online iStorage orders come with a free USB Type C adapter worth €9.95.
Easy to use
FIPS 140-2 Level 3 Validated
Tamper-proof and fraud-resistant design
Wear-resistant keypad
Equipped with a Common Criteria EAL 5+ (Hardware Certified) secure microprocessor
IP68 Certified: Water and dust resistant








-
More about datAshur PRO2
New: super-fast, extremely secure USB 3.2 stick
The new iStorage datAshur Pro2 is a pin code protected USB 3.2 stick. That makes it more secure than many USB sticks, but there is more. Thanks to the XTS-AES 256-bit hardware encryption, this USB meets military security level.
Major Benefits of the iStorage DatAshur Pro2 USB Stick
Suitable for all PC software
There is no software required to use the iStorage dataShur Pro2 USB drive. It works with: MS Windows, MacOS, Linux, Android, Chrome, Thin Clients, Zero Clients, Embedded Systems, Citrix, VMware, DVRs, Medical Devices, Printers, Scanners, CCTV. It simply works on any device with a USB port.
Government Validations
To guarantee the safety of this secure USB 3.2 stick, it has been tested on various criteria. For example, the datAshur Pro2 has the following quality marks:
FIPS 140-2 Level 3, NCSC CPA, NLNCSA DEP-V*; NATO RESTRICTED* (in process since Q3 2019), FIPS 140-2 Level 3,CESG CPA Foundation Grade 100% real-time military grade AES-XTS 256-bit hardware encryption with a FIPS PUB 197 validated encryption algorithm.
FIPS 140-2 Level 3 compliant Tamper-resistant & evident design
All critical components of this secure USB stick are coated with a layer of super-strong epoxy resin. This layer cannot be removed without damaging the USB stick beyond use. If there is a 'break-in' anyway? The tamper-proof design of the datAshur Pro2 will clearly show signs of tampering.
Super-fast USB 3.2 (Generation 1x1)
This USB stick uses the fastest data transfer method available and can therefore transfer up to 16 Gbit per second. In addition, it is also suitable for working with older USB ports. Both the USB Cryptochip and the Secure Microprocessor are immune to BAD USB, due to digitally signed memory lock mechanisms.
Automatic lock when inactive
It is possible to set a lock that is automatically activated after a certain period of inactivity. The datAshur Pro2 will automatically lock when you remove it from the laptop or when the power to the USB port is turned off.
The admin can arrange some useful things with the USB stick
Set as removable media or hard drive
datAshur Pro2 can be set up as removable media depending on the operating system and application scenario. You can also choose a hard disk to meet user needs. For example, if someone wants a computer with a fixed, secure 'vault', you can choose to use datAshur Pro2 as a hard disk. If someone wants to be able to take data with them, then this is a perfect fit for the employee's needs as a removable media. Always make sure to back up your data.
Set Read Only - Dual Mode
The admin and the user can set the datAshur Pro2 as a 'read only' device. This way others can not change the data, but only view it. The admin can also set the device so that the user can not make the USB stick unusable.
Pin registration for users
The admin can set restrictions for the pin code. Think of the minimum pin code length. Or that the admin can make it mandatory to use special characters in the pin code. The device supports independent user and admin pin codes.
Brute force anti-hack defense mechanism
If the user PIN is entered incorrectly ten times in a row, the PIN will be deleted. At that time, the disk can only be opened by the admin, who must reset the user PIN. It is possible to change the number of ten incorrect entries to 1 to 9 PIN attempts, but this can only be done by the admin. If the admin PIN is entered incorrectly 10 times in a row, all PINs and the encrypted encryption key will be lost forever.
One-time PIN code recovery
The one-time user recovery PIN code is also settable by the admin. Very useful if the user has forgotten the PIN code. The user can unlock the USB with it and set a new personal PIN code.
Self-destruct capability
Pre-program the datAshur Pro2 with a self-destruct PIN code. When entered, everything is permanently erased: from the encrypted encryption key and all PIN codes to all information on the stick.
The datAshur Pro2 can be reprogrammed. A new encrypted encryption key is generated at random. This process can be repeated indefinitely.
Extra security against hackers
The Common Criteria EAL4+ ready secure microprocessor signals and responds to fraud and intrusion. Some examples:
- Special hardware to protect against SPA/DPA/SEMA and DEMA attacks
- Advanced protection against physical attacks such as -Active Shield, Enhance Protection Object, CStack checker, Slope Detector and Parity Errors
- Environmental Protection Systems protect against voltage monitor, frequency monitor, temperature monitor and light protection
- Secure Memory Management/Access Protection
- IP58 certified
The datAshur Pro2 is dust and water resistant. It includes a hard oxidized and robust extruded aluminum protective case.
Polymer-wrapped, wear-resistant, on-board alphanumeric keypad
The datAshur Pro2 is authenticated (unlocked) and all functions are performed by the on-board keyboard without any intervention from the host computer. The device is not vulnerable to key-loggers or brute force attacks. The datAshur Pro2 keyboard is coated with a layer of wear-resistant polymer for extra protection. (Note: The protection makes it impossible to guess which keys marked by wear have been used frequently)
Lock Bypass Mode
Ideal in certain cases when the datAshur Pro2 needs to remain locked via USB port re-enumeration, such as during reboots or when running the device through a virtual machine.
Whitelisting on networks
The USB stick can be whitelisted to be allowed to use a specific network. With standard endpoint management software the admin can select which unique VID/PID and internal/external serial numbers are allowed to participate in the network.
Custom options available
We offer an in-house pin configuration and laser engraving service where the datAshur Pro2 case or side of the module can be printed with your name, company name, logo, website/email address and telephone number. -
Features of datAshur PRO2
- PIN authentication, hardware encrypted USB flash drive
- FIPS 140-2 Level 3 CertifiedFIPS Level 3 Certified
- Tamper-proof and clear design
- On-device Crypto chipOS and platform independent
- SuperSpeed USB 3.2 (Gen 2)
- Incorporates a Common Criteria EAL 5+ (Hardware Certified) secure microprocessor
- Brute force hack defense mechanism
- Polymer coated, wear resistant built-in alphanumeric keypad
- Read only (write protection)
– Dual Mode Bootable
– Install an operating system on the disk and boot directly from it
- Lock override mode
- User PIN registration
- One-time user recovery PIN
- Self-destruct function
- Whitelisting on networks
- Immune to bad USB
- IP68 certified (dust and waterproof)
- Inactivity Auto Lock -
Technical specifications of datAshur PRO2
- Hardware: Hardware Encoded USB Flash Drive
- Interface: USB 3.2 Gen 1 SuperSpeed – up to 5Gbps. Backwards compatible with USB 3.0/2.0/1.1
- Data transfer speeds: Read: 168 MB/s | Write: 128 MB/s
- Battery: 3.7V rechargeable Li-polymer battery
- Capacities: 14GB, 8GB, 16GB, 32GB, 64GB, 128GB, 256GB, 512GB
- Weight: With sleeve: approx. 37 grams, Without sleeve: approx. 28 grams
- Dimensions: H/W/D87.40 mm / 19.40 mm / 13.40 mm
- Compatibility: MS Windows, macOS, Linux, Chrome, Android, Thin Clients, Zero Clients, Embedded Systems, Citrix and VMware
- Hardware data encryption: AES-XTS 256-bit full disk hardware encryption
- Certification: FIPS 140-2 Level 3 Certified Approvals
- Warranty: 3 years warranty with free lifetime technical support