This is a technical feature comparison of commercial encrypted external drives.

Background information

NameDeveloper/ManufacturerRelease YearCurrent Model?
datAshur PROiStorage Limited2015Yes
datAshur PRO²iStorage Limited2019-08Yes
diskAshur PRO²iStorage Limited2017Yes
SafeStick SuperSonicBlockMaster2009No
IronKey S100IronKey2005No
IronKey Basic S200IronKey2009No
IronKey Keypad 200IronKey2022-09Yes
IronKey D200IronKey2009No
CryptX2CryptX2 / Open Source2012No
DataTraveler 5000Kingston Technology2010-01No
DataTraveler Locker+Kingston Technology2009-10No
DataTraveler Locker+ G2Kingston Technology2012-07No
DataTraveler Locker+ G3Kingston Technology2014-01Yes
DataTraveler VaultKingston Technology2008-05No
DataTraveler Vault – Privacy EditionKingston Technology2009-01No
DataTraveler Vault Privacy 3.0Kingston Technology2020-07Yes
JumpDrive SecureII PlusLexar2009-12No
IronCladLockheed Martin2010No
Cruzer EnterpriseSanDisk2008-11No
Store 'n' Go CorporateVerbatim2010-06No
NameDeveloper/ManufacturerRelease YearCurrent Model?
  • Ironkey was acquired by Kingston Technology in February 2016
  • IronClad is a technology, a secure type of "PC on a stick" (flash drive which has an Operating System included), which runs on top of Ironkey drive. It is also known as a "turnkey solution", as in it "plugs and plays".

Operating systems

NameWindowsFreeBSDLinuxMac OSNetBSDOpenBSD
SafeStick SuperSonicYesNoYesYesNoNo
IronKey S100YesNoYesYesNoNo
IronKey S200YesNoYesYesNoNo
IronKey D200YesNoYesYesNoNo
CryptX2YesYesYesYesYesYes
DataTraveler 5000YesNoNoNoNoNo
DataTraveler Locker+YesNoNoYesNoNo
DataTraveler VaultYesNoPublic partition onlyPublic partition onlyNoNo
DataTraveler Vault – Privacy EditionYesNoNoYesNoNo
IronCladYesNoYesYesNoNo
Cruzer EnterpriseYesUnknownUnknownYesUnknownUnknown
NameWindowsFreeBSDLinuxMac OSNetBSDOpenBSD

Features

  • Bootable: Whether (with the appropriate OS installed on the drive and supporting BIOS on a computer) the drive can be used to boot a computer.
  • Encryption Type: Type of encryption used.
  • Certification: Whether FIPS 140-2 or similar validation has been passed.
  • Managed: Whether enterprise level management software for maintaining large numbers of devices is included.
  • Interface: List of USB, Firewire, eSATA, or other interfaces for connection a computer.
  • Max Capacity: Maximum size drive is available in.
  • Included Software: List of any included software, excluding any standard freeware or trialware obtainable by an end user.
  • Other Features: Other notable features that differentiate the device.
NameBootableEncryption TypeCertificationManagedInterfaceMax CapacityIncluded SoftwareOther Features
datAshur PROYesAES 256-bit XTS Hardware EncryptionFIPS 140-2 Level 3NoUSB-A 3.x Gen 164 GBOS & Platform independent- software free, Keypad, MIL-STD-810F, IP57 certified, 3 years manufacturer warranty
diskAshur PRO²YesAES 256-bit XTS Hardware EncryptionFIPS 140-2 Level 2 FIPS 140-2 Level 3NoUSB-A 3.0 Gen15 TBOS & Platform independent- software freeware, Keypad, integrated USB cable, Shingled magnetic Recording (SMR)
iStorage diskAshur DT2 HDD externalUnknownAES 256-bit Hardware EncryptionFIPS 140-2 Level 2 FIPS 140-2 Level 3, FIPS 197USB-B 3.x Gen 118 TBKeypad, external Power Supply, 2 year manufacturer warranty
iStorage diskAshur M.2UnknownAES 256-bit Hardware EncryptionFIPS 140-3 Level 3USB-A 3.x Gen12 TBwaterproof, IP68 certified, Keypad, incl. USB cable (USB-A and USB-C), three years manufacturer-warranty
SafeStick SuperSonicNoAES 256-bit CBC Hardware EncryptionCESG CCTM, FIPS 140-2Optional (with SafeConsole)USB 2.08 GBHigh transfer speeds, Inactivity lock
IronKey S100NoAES 128-bit CBC Hardware EncryptionFIPS 140-2 Level 2Enterprise Model onlyUSB 2.016 GBIdentity Manager; Secure Sessions
IronKey S200NoAES 256-bit CBC Hardware EncryptionFIPS 140-2 Level 3Enterprise Model onlyUSB 2.016 GBIdentity Manager; Secure Sessions
IronKey D200NoAES 256-bit CBC Hardware EncryptionFIPS 140-2 Level 3Enterprise Model onlyUSB 2.032 GBIdentity Manager; Secure Sessions
CryptX2YesAES 256-bit CBC Hardware EncryptionNoNoUSB 2.064 GB / Future Support for 4 TBNo Software RequiredID Verify, Panic Mode, Upgradeable Firmware
DataTraveler 5000NoAES 256-bit XTS Hardware EncryptionFIPS 140-2 Level 2NoUSB 2.016 GBWater resistant
DataTraveler Locker+NoHardware EncryptionNoNoUSB 2.032 GBNo
DataTraveler VaultNoAES 256-bit Hardware EncryptionNoNoUSB 2.032 GBDTVaultLockSecond unsecured partition
DataTraveler Vault – Privacy EditionNoAES 256-bit Hardware EncryptionNoUSB 2.032 GBWaterproof to 4'
IronCladYesAES 256-bit CBC Hardware EncryptionFIPS 140-2 Level 3YesUSB 2.016 GB
Cruzer EnterpriseNoHardwareFIPS 140-2 ?YesUSB 2.0
Apricorn Aegis Secure Key 3NXCUnknownAES 256-bit Hardware EncryptionFIPS 140-2 Level 3USB-C 3.x Gen164 GBKeypad, IP67 certified, integrated rechargeable battery, 3 years manifaturerer warranty
Apricorn Aegis FortressUnknownAES 256-bit Hardware EncryptionFIPS 140-2 Level 3USB-Micro-B 3.x Gen15 TBaluminum housing, Keypad, incl. USB cable (USB-A), incl. USB cable (USB-C), Shingled magnetic Recording (SMR), three years manufacturer-warranty
datAshur PRO²UnknownAES 256-bit Hardware EncryptionFIPS 140-2 Level 3USB-A 3.x Gen 1512 GBKeypad, IP58 zertifiziert, 3 years manufacturer warranty
Kingston IronKey Keypad 200UnknownAES 256-bit Hardware EncryptionFIPS 140-2 Level 3USB-A 3.x Gen 1128 GBKeypad, XTS-AES, IP57
ClevX SecureData SecureDrive KP SSDUnknownAES 256-bit Hardware EncryptionFIPS 140-2 Level 3USB-Micro-B 3.x Gen12 TBKeypad, incl. USB cable (USB-A)
NameBootableEncryption TypeCertificationManagedInterfaceMax CapacityIncluded SoftwareOther Features

See also

Notes and references