| CPC H04L 9/0827 (2013.01) | 20 Claims |

|
1. A data storage device, comprising:
a data path comprising:
a data port configured to transmit data between a host computer system and the data storage device, wherein the data storage device is configured to register with the host computer system as a block data storage device;
a non-volatile storage device configured to store encrypted user content data; and
a cryptography engine connected between the data port and the non-volatile storage device and configured to use cryptographic key data to encrypt user content data received from the host computer system and to decrypt the encrypted user content data stored on the non-volatile storage device in response to a request from the host computer system, and
a controller configured to:
send the encrypted user content data for back-up storage external to the data storage device as encrypted by the cryptographic key data; and
communicate with a user device over a communication channel that is different from the data path, to send the cryptographic key data for decryption of the encrypted user content data external to the data storage device.
|