IMPORTANT! How does Bitlocker erase the clear key on "Bitlocker resume"?
Microsoft documents say that "Suspend keeps the data encrypted but encrypts the BitLocker volume master key with a clear key. The clear key is a cryptographic key stored unencrypted and unprotected on the disk drive...After the changes are made and BitLocker is again enabled...the clear key is erased."
Question is: How is it "erased"?
- Is it overwritten? With zeros? With random data? How many passes? Or is it simply deleted?
Follow-up question naturally is:
- If overwritten, how can Windows overwrite those exact sectors of HDD if SSD is used, because they dont work like "normal" HDD:s (they dont have exact block locations)?
Please dont say "its erased in secure manner". I did not ask it.
Please, please, dont give me a lecture about how Bitlocker works. I did not ask it.
Please dont tell me why one needs to suspend or resume encryption. I did not ask it.
Please dont copy paste from Microsoft documents and answer that does not answer my question. I did not ask it.
Please dont mark this question as "answered" without answering exactly to the exact question I asked, no giving a link to something that does not answer the exact question I asked is not "answering" to my question either. I did not ask it.
I actually tryed asking this question years ago AND DID NOT GET AN ANSWER, so please answer me now.
https://social.technet.microsoft.com/Forums/office/en-US/b8457e80-2de8-4aeb-bce9-1b7ff330452b/how-does-bitlocker-erase-the-clear-key-on-a-ssd?forum=win10itprosecurity