Hi All! Hope everyone is well.
I am researching some certification/data destruction questions, and I thought this might be a good place to ask:
What is the status of R2/e-Stewards regarding an Apple "factory reset" of a 2018+ MacBook/iPad/iPhone as a legitimate "wipe"? From what I understand, as of 2018 and the T2 chip, every Mac is encrypted, and the "erase Mac" function securely deletes the encryption keys, so the chance of data recovery is basically impossible, despite the data technically still residing on the device.
If this kind of reset is not considered acceptable for newer Apple devices, is this because an encryption key deletion is not considered sufficient, or because an Apple device does not within itself create a document of data destruction?
If it's a documentation issue, would it hypothetically help if Apple Configurator 2 (Apple's professional device resetting tool) produced an appropriate log, or would the nature of the reset still cause it to be considered invalid?
Does anyone have experience using Blaanco or similar enterprise tools to process T2/M1/M2 Macs? And if Blaanco/etc. is considered acceptable, what is it that differentiates it from an Apple "erase Mac"?
Thanks!
John
--