SIST EN 303 800-2 V1.1.1:2025
(Main)Environmental Engineering (EE) - Assessment of material efficiency of ICT network infrastructure goods (circular economy) - Part 2: Server and data storage product secure data deletion functionality
General Information
- Abstract
The present document specifies a method for the verification of compliance with the requirements on the secure data
deletion functionality for:
1) servers; and
2) data storage equipment.
The present document covers demonstration of compliance with the data deletion requirements:
• instructions on how to use the functionality;
• the techniques used; and
• the supported secure data deletion standard(s), if applicable.
The following products are out of scope of the present document:
• servers intended for embedded applications;
• servers classified as small scale servers in terms of Regulation (EU) No 617/2013 [i.2];
• servers with more than four processor sockets;
• server appliances;
• large servers;
• fully fault tolerant servers;
• network servers;
• small data storage products;
• large data storage products;
• servers or data storage products which in addition are used in means of transport for persons or goods;
NOTE: See Directive 2009/125/EC [i.1].
• data storage devices that are not included in the product placed on the market by the Manufacturer, their
authorized representatives or importer, and are not included in modifications or updates provided or specified
by the manufacturer, their authorized representatives or importer.
- Status
- Published
- Public Enquiry End Date
- 23-Apr-2025
- Publication Date
- 09-Jun-2025
- Technical Committee
- SPN - Services and Protocols for Networks
- Current Stage
- 6060 - National Implementation/Publication (Adopted Project)
- Start Date
- 09-Jun-2025
- Due Date
- 14-Aug-2025
- Completion Date
- 10-Jun-2025
Buy Documents
ETSI EN 303 800-2 V0.0.11 (2025-01) - Environmental Engineering (EE); Assessment of material efficiency of ICT network infrastructure goods (circular economy); Part 2: Server and data storage product secure data deletion functionality
ETSI EN 303 800-2 V1.1.1 (2025-06) - Environmental Engineering (EE); Assessment of material efficiency of ICT network infrastructure goods (circular economy); Part 2: Server and data storage product secure data deletion functionality
Overview
SIST EN 303 800-2 V1.1.1:2025 is a European standard developed to support the circular economy by enhancing the material efficiency of ICT (Information and Communication Technology) network infrastructure goods. This part focuses specifically on the secure data deletion functionality for servers and data storage equipment. The document provides a clear methodology for verifying compliance with secure data deletion requirements, helping manufacturers, importers, and service providers ensure best practices in information security and sustainability.
Secure data sanitization is a critical aspect of responsible e-waste management, protecting sensitive data during the reuse, refurbishment, or recycling of network servers and storage solutions. This standard is applicable to most servers and data storage devices, excluding those used in embedded applications, very large or small-scale systems, and products used in transportation.
Key Topics
Data Deletion Methods
The standard details recognized data sanitization methods, including:- Clear: Logical removal of user data, protecting against straightforward recovery.
- Purge: Advanced logical or physical techniques rendering data unrecoverable, while preserving device usability.
- Destruct: Physical destruction, making data recovery impossible and preventing future device reuse.
Verification and Documentation
To ensure effective secure data deletion, the standard requires:- Clear instructions for end-users on utilizing deletion features.
- Means for users to verify that data deletion has been effective-via physical or electronic methods in line with standards like IEEE 2883-2022.
- Maintenance of records for each data deletion event, including responsible entity, outcome, and remedial actions if necessary.
Data Exclusions for Reuse
Certain essential product data (e.g., firmware, regulatory compliance information) should be preserved to enable device reuse and regulatory adherence after data deletion procedures.Access for Independent Service Providers
Manufacturers can provide secure data deletion instructions to qualified maintenance, repair, or recycling operators, with processes for registration and validation.
Applications
SIST EN 303 800-2 V1.1.1:2025 delivers practical value across several areas:
Data Security Compliance
By adhering to the secure data deletion requirements, organizations can mitigate the risk of data breaches during hardware decommissioning and contribute to ICT security best practices.Sustainable ICT Lifecycle Management
Utilizing standard-compliant secure deletion enhances the sustainability of ICT assets, facilitating reuse, repair, and recycling according to circular economy principles.Regulatory and Eco-Design Support
Compliance with this standard helps manufacturers meet eco-design and data privacy regulations within the EU, including standards referenced in Directive 2009/125/EC and Regulation (EU) 2019/424.Procurement and IT Asset Disposition (ITAD)
Procurement professionals and ITAD service providers can recognize products meeting this standard as conforming to robust data protection and circularity criteria.
Related Standards
- IEEE 2883-2022: IEEE Standard for Sanitizing Storage, referenced for definitions and technical requirements on data sanitisation methods.
- ETSI EN 303 800-5: Covers disassembly and disassembly instructions for servers and data storage products, supporting sustainable recycling and repair processes.
- Commission Regulation (EU) 2019/424: Lays down eco-design rules for ICT equipment, complementing secure data deletion with broader environmental requirements.
- Recommendation ITU-T L.ME_DD: Internationally harmonized equivalent, ensuring alignment between ETSI and ITU-T on material efficiency and secure deletion.
By following SIST EN 303 800-2 V1.1.1:2025, organizations help ensure secure data deletion in accordance with industry best practices and European legislation, supporting both information security and the circular economy in ICT network infrastructure.
Buy Documents
ETSI EN 303 800-2 V0.0.11 (2025-01) - Environmental Engineering (EE); Assessment of material efficiency of ICT network infrastructure goods (circular economy); Part 2: Server and data storage product secure data deletion functionality
ETSI EN 303 800-2 V1.1.1 (2025-06) - Environmental Engineering (EE); Assessment of material efficiency of ICT network infrastructure goods (circular economy); Part 2: Server and data storage product secure data deletion functionality
Get Certified
Connect with accredited certification bodies for this standard

BSI Group
BSI (British Standards Institution) is the business standards company that helps organizations make excellence a habit.
IMP NDT d.o.o.
Non-destructive testing services. Radiography, ultrasonic, magnetic particle, penetrant, visual inspection.
Inštitut za kovinske materiale in tehnologije
Institute of Metals and Technology. Materials testing, metallurgical analysis, NDT.
Sponsored listings
Frequently Asked Questions
SIST EN 303 800-2 V1.1.1:2025 is a standard published by the Slovenian Institute for Standardization (SIST). Its full title is "Environmental Engineering (EE) - Assessment of material efficiency of ICT network infrastructure goods (circular economy) - Part 2: Server and data storage product secure data deletion functionality". This standard covers: The present document specifies a method for the verification of compliance with the requirements on the secure data deletion functionality for: 1) servers; and 2) data storage equipment. The present document covers demonstration of compliance with the data deletion requirements: • instructions on how to use the functionality; • the techniques used; and • the supported secure data deletion standard(s), if applicable. The following products are out of scope of the present document: • servers intended for embedded applications; • servers classified as small scale servers in terms of Regulation (EU) No 617/2013 [i.2]; • servers with more than four processor sockets; • server appliances; • large servers; • fully fault tolerant servers; • network servers; • small data storage products; • large data storage products; • servers or data storage products which in addition are used in means of transport for persons or goods; NOTE: See Directive 2009/125/EC [i.1]. • data storage devices that are not included in the product placed on the market by the Manufacturer, their authorized representatives or importer, and are not included in modifications or updates provided or specified by the manufacturer, their authorized representatives or importer.
The present document specifies a method for the verification of compliance with the requirements on the secure data deletion functionality for: 1) servers; and 2) data storage equipment. The present document covers demonstration of compliance with the data deletion requirements: • instructions on how to use the functionality; • the techniques used; and • the supported secure data deletion standard(s), if applicable. The following products are out of scope of the present document: • servers intended for embedded applications; • servers classified as small scale servers in terms of Regulation (EU) No 617/2013 [i.2]; • servers with more than four processor sockets; • server appliances; • large servers; • fully fault tolerant servers; • network servers; • small data storage products; • large data storage products; • servers or data storage products which in addition are used in means of transport for persons or goods; NOTE: See Directive 2009/125/EC [i.1]. • data storage devices that are not included in the product placed on the market by the Manufacturer, their authorized representatives or importer, and are not included in modifications or updates provided or specified by the manufacturer, their authorized representatives or importer.
SIST EN 303 800-2 V1.1.1:2025 is classified under the following ICS (International Classification for Standards) categories: 19.040 - Environmental testing; 35.220.01 - Data storage devices in general. The ICS classification helps identify the subject area and facilitates finding related standards.
SIST EN 303 800-2 V1.1.1:2025 is available in PDF format for immediate download after purchase. The document can be added to your cart and obtained through the secure checkout process. Digital delivery ensures instant access to the complete standard document.
Standards Content (Sample)
Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
EUROPEAN STANDARD
Environmental Engineering (EE);
Assessment of material efficiency of ICT network
infrastructure goods (circular economy);
Part 2: Server and data storage product secure data
deletion functionality
2 Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
Reference
DEN/EE-EEPS47-2
Keywords
environment, e-waste management, KPI, server,
storage, waste management
ETSI
650 Route des Lucioles
F-06921 Sophia Antipolis Cedex - FRANCE
Tel.: +33 4 92 94 42 00 Fax: +33 4 93 65 47 16
Siret N° 348 623 562 00017 - APE 7112B
Association à but non lucratif enregistrée à la
Sous-Préfecture de Grasse (06) N° w061004871
Important notice
The present document can be downloaded from the
ETSI Search & Browse Standards application.
The present document may be made available in electronic versions and/or in print. The content of any electronic and/or
print versions of the present document shall not be modified without the prior written authorization of ETSI. In case of any
existing or perceived difference in contents between such versions and/or in print, the prevailing version of an ETSI
deliverable is the one made publicly available in PDF format on ETSI deliver repository.
Users should be aware that the present document may be revised or have its status changed,
this information is available in the Milestones listing.
If you find errors in the present document, please send your comments to
the relevant service listed under Committee Support Staff.
If you find a security vulnerability in the present document, please report it through our
Coordinated Vulnerability Disclosure (CVD) program.
Notice of disclaimer & limitation of liability
The information provided in the present deliverable is directed solely to professionals who have the appropriate degree of
experience to understand and interpret its content in accordance with generally accepted engineering or
other professional standard and applicable regulations.
No recommendation as to products and services or vendors is made or should be implied.
In no event shall ETSI be held liable for loss of profits or any other incidental or consequential damages.
Any software contained in this deliverable is provided "AS IS" with no warranties, express or implied, including but not
limited to, the warranties of merchantability, fitness for a particular purpose and non-infringement of intellectual property
rights and ETSI shall not be held liable in any event for any damages whatsoever (including, without limitation, damages
for loss of profits, business interruption, loss of information, or any other pecuniary loss) arising out of or related to the use
of or inability to use the software.
Copyright Notification
No part may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and
microfilm except as authorized by written permission of ETSI.
The content of the PDF version shall not be modified without the written authorization of ETSI.
The copyright and the foregoing restriction extend to reproduction in all media.
© ETSI 2025.
All rights reserved.
ETSI
3 Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
Contents
Intellectual Property Rights . 4
Foreword . 4
Modal verbs terminology . 5
Introduction . 5
1 Scope . 6
2 References . 6
2.1 Normative references . 6
2.2 Informative references . 7
3 Definition of terms, symbols and abbreviations . 7
3.1 Terms . 7
3.2 Symbols . 9
3.3 Abbreviations . 9
4 Assessment of the secure data deletion functionality for servers and data storage products . 10
4.1 Provision of functionality to perform secure data deletion . 10
4.1.1 Availability of functionality . 10
4.1.2 Availability of clear or purge method . 10
4.1.3 Availability of destruct method and additional methods . 10
4.1.4 Returning Server or Data Storage Equipment to usable state . 10
4.2 Data exclusions from data deletion provision . 10
4.3 Registration . 11
5 End-user verification of successful Data Deletion . 11
5.1 Means of end-user verification of the effectiveness of the deletion method . 11
5.2 Record of Data Deletion . 11
6 Assessment of data deletion documentation and functionality . 12
6.1 Means of assessment . 12
6.2 Verification of secure data deletion documentation . 12
6.2.1 Information on secure data deletion functionality . 12
History . 13
ETSI
4 Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
Intellectual Property Rights
Essential patents
IPRs essential or potentially essential to normative deliverables may have been declared to ETSI. The declarations
pertaining to these essential IPRs, if any, are publicly available for ETSI members and non-members, and can be
found in ETSI SR 000 314: "Intellectual Property Rights (IPRs); Essential, or potentially Essential, IPRs notified to
ETSI in respect of ETSI standards", which is available from the ETSI Secretariat. Latest updates are available on the
ETSI IPR online database.
Pursuant to the ETSI Directives including the ETSI IPR Policy, no investigation regarding the essentiality of IPRs,
including IPR searches, has been carried out by ETSI. No guarantee can be given as to the existence of other IPRs not
referenced in ETSI SR 000 314 (or the updates on the ETSI Web server) which are, or may be, or may become,
essential to the present document.
Trademarks
The present document may include trademarks and/or tradenames which are asserted and/or registered by their owners.
ETSI claims no ownership of these except for any which are indicated as being the property of ETSI, and conveys no
right to use or reproduce any trademark and/or tradename. Mention of those trademarks in the present document does
not constitute an endorsement by ETSI of products, services or organizations associated with those trademarks.
DECT™, PLUGTESTS™, UMTS™ and the ETSI logo are trademarks of ETSI registered for the benefit of its
Members. 3GPP™, LTE™ and 5G™ logo are trademarks of ETSI registered for the benefit of its Members and of the
3GPP Organizational Partners. oneM2M™ logo is a trademark of ETSI registered for the benefit of its Members and of ®
the oneM2M Partners. GSM and the GSM logo are trademarks registered and owned by the GSM Association.
Foreword
This draft European Standard (EN) has been produced by ETSI Technical Committee Environmental Engineering (EE),
and is now submitted for the combined Public Enquiry and Vote phase of the ETSI EN Approval Procedure (ENAP).
The present document is part 2 of a multi-part deliverable covering Environmental Engineering (EE); Assessment of
material efficiency of ICT network infrastructure goods (circular economy), as identified below:
Part 2: "Server and data storage product secure data deletion functionality";
Part 3: "Server and data storage product availability of firmware and of security updates to firmware";
Part 5: "Server and data storage product disassembly and disassembly instruction".
NOTE: Part 1 and Part 4 have been cancelled as their intended content is already covered by other standards.
Proposed national transposition dates
Date of latest announcement of this EN (doa): 3 months after ETSI publication
Date of latest publication of new National Standard
or endorsement of this EN (dop/e): 6 months after doa
Date of withdrawal of any conflicting National Standard (dow): 6 months after doa
ETSI
5 Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
Modal verbs terminology
In the present document "shall", "shall not", "should", "should not", "may", "need not", "will", "will not", "can" and
"cannot" are to be interpreted as described in clause 3.2 of the ETSI Drafting Rules (Verbal forms for the expression of
provisions).
"must" and "must not" are NOT allowed in ETSI deliverables except when used in direct citation.
Introduction
The present document addresses the requirements on secure data deletion. It aims to give a valid and compliant method
to assess if this specific requirement on data deletion has been met.
The present document was developed jointly by ETSI TC EE and ITU-T Study Group 5 and published by ITU and
ETSI as Recommendation ITU-T L.ME_DD [i.4] and ETSI EN 303 800-2 (the present document), which are
technically equivalent.
ETSI
6 Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
1 Scope
The present document specifies a method for the verification of compliance with the requirements on the secure data
deletion functionality for:
1) servers; and
2) data storage equipment.
The present document covers demonstration of compliance with the data deletion requirements:
• instructions on how to use the functionality;
• the techniques used; and
• the supported secure data deletion standard(s), if applicable.
The following products are out of scope of the present document:
• servers intended for embedded applications;
• servers classified as small scale servers in terms of Regulation (EU) No 617/2013 [i.2];
• servers with more than four processor sockets;
• server appliances;
• large servers;
• fully fault tolerant servers;
• network servers;
• small data storage products;
• large data storage products;
• servers or data storage products which in addition are used in means of transport for persons or goods;
NOTE: See Directive 2009/125/EC [i.1].
• data storage devices that are not included in the product placed on the market by the Manufacturer, their
authorized representatives or importer, and are not included in modifications or updates provided or specified
by the manufacturer, their authorized representatives or importer.
2 References
2.1 Normative references
References are either specific (identified by date of publication and/or edition number or version number) or
non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the
referenced document (including any amendments) applies.
Referenced documents which are not found to be publicly available in the expected location might be found in the
ETSI docbox.
NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee
their long term validity.
The following referenced documents are necessary for the application of the present document.
[1] IEEE 2883™-2022: "IEEE Standard for Sanitizing Storage".
ETSI
7 Draft ETSI EN 303 800-2 V0.0.11 (2025-01)
[2] ETSI EN 303 800-5: "Environmental Engineering (EE); Assessment of material efficiency of ICT
network infrastructure goods (circular economy); Part 5: Server and data storage product
disassembly and disassembly instruction".
2.2 Informative references
References are either specific (identified by date of publication and/or edition number or version number) or
non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the
referenced document (including any amendments) applies.
NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee
their long term validity.
The following referenced documents are not necessary for the application of the present document but they assist the
user with regard to a particular subject area.
[i.1] Directive 2009/125/EC of the European Parliament and of the Council of 21 October 2009
establishing a framework for the setting of ecodesign requirements for energy-related products
(recast).
[i.2] Commission Regulation (EU) No 617/2013 of 26 June 2013 implementing Directive 2009/125/EC
of the European Parliament and of the Council with regard to ecodesign requirements for
computers and computer servers.
[i.3] European Commission Notice 2016/C 272/01: "The 'Blue Guide' on the implementation of EU
products rules 2016".
[i.4] Recommendation ITU-T L.ME_DD: "Assessment of material efficiency of ICT network
infrastructure goods (circular economy)- Part - 2: server and data storage product secure data
deletion functionality".
[i.5] Commission Regulation (EU) 2019/424 of 15 March 2019 laying down ecodesign requirements
for servers and data storage products pursuant to Directive 2009/125/EC of the European
Parliament and of the Counc
...
EUROPEAN STANDARD
Environmental Engineering (EE);
Assessment of material efficiency of ICT network
infrastructure goods (circular economy);
Part 2: Server and data storage product secure data
deletion functionality
2 ETSI EN 303 800-2 V1.1.1 (2025-06)
Reference
DEN/EE-EEPS47-2
Keywords
environment, e-waste management, KPI, server,
storage, waste management
ETSI
650 Route des Lucioles
F-06921 Sophia Antipolis Cedex - FRANCE
Tel.: +33 4 92 94 42 00 Fax: +33 4 93 65 47 16
Siret N° 348 623 562 00017 - APE 7112B
Association à but non lucratif enregistrée à la
Sous-Préfecture de Grasse (06) N° w061004871
Important notice
The present document can be downloaded from the
ETSI Search & Browse Standards application.
The present document may be made available in electronic versions and/or in print. The content of any electronic and/or
print versions of the present document shall not be modified without the prior written authorization of ETSI. In case of any
existing or perceived difference in contents between such versions and/or in print, the prevailing version of an ETSI
deliverable is the one made publicly available in PDF format on ETSI deliver repository.
Users should be aware that the present document may be revised or have its status changed,
this information is available in the Milestones listing.
If you find errors in the present document, please send your comments to
the relevant service listed under Committee Support Staff.
If you find a security vulnerability in the present document, please report it through our
Coordinated Vulnerability Disclosure (CVD) program.
Notice of disclaimer & limitation of liability
The information provided in the present deliverable is directed solely to professionals who have the appropriate degree of
experience to understand and interpret its content in accordance with generally accepted engineering or
other professional standard and applicable regulations.
No recommendation as to products and services or vendors is made or should be implied.
In no event shall ETSI be held liable for loss of profits or any other incidental or consequential damages.
Any software contained in this deliverable is provided "AS IS" with no warranties, express or implied, including but not
limited to, the warranties of merchantability, fitness for a particular purpose and non-infringement of intellectual property
rights and ETSI shall not be held liable in any event for any damages whatsoever (including, without limitation, damages
for loss of profits, business interruption, loss of information, or any other pecuniary loss) arising out of or related to the use
of or inability to use the software.
Copyright Notification
No part may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and
microfilm except as authorized by written permission of ETSI.
The content of the PDF version shall not be modified without the written authorization of ETSI.
The copyright and the foregoing restriction extend to reproduction in all media.
© ETSI 2025.
All rights reserved.
ETSI
3 ETSI EN 303 800-2 V1.1.1 (2025-06)
Contents
Intellectual Property Rights . 4
Foreword . 4
Modal verbs terminology . 5
Introduction . 5
1 Scope . 6
2 References . 6
2.1 Normative references . 6
2.2 Informative references . 7
3 Definition of terms, symbols and abbreviations . 7
3.1 Terms . 7
3.2 Symbols . 9
3.3 Abbreviations . 9
4 Assessment of the secure data deletion functionality for servers and data storage products . 10
4.1 Provision of functionality to perform secure data deletion . 10
4.1.1 Availability of functionality . 10
4.1.2 Availability of clear or purge method . 10
4.1.3 Availability of destruct method and additional methods . 10
4.1.4 Returning Server or Data Storage Equipment to usable state . 10
4.2 Data exclusions from data deletion provision . 10
4.3 Registration . 11
5 End-user verification of successful Data Deletion . 11
5.1 Means of end-user verification of the effectiveness of the deletion method . 11
5.2 Record of Data Deletion . 11
6 Assessment of data deletion documentation and functionality . 12
6.1 Means of assessment . 12
6.2 Verification of secure data deletion documentation . 12
6.2.1 Information on secure data deletion functionality . 12
History . 13
ETSI
4 ETSI EN 303 800-2 V1.1.1 (2025-06)
Intellectual Property Rights
Essential patents
IPRs essential or potentially essential to normative deliverables may have been declared to ETSI. The declarations
pertaining to these essential IPRs, if any, are publicly available for ETSI members and non-members, and can be
found in ETSI SR 000 314: "Intellectual Property Rights (IPRs); Essential, or potentially Essential, IPRs notified to
ETSI in respect of ETSI standards", which is available from the ETSI Secretariat. Latest updates are available on the
ETSI IPR online database.
Pursuant to the ETSI Directives including the ETSI IPR Policy, no investigation regarding the essentiality of IPRs,
including IPR searches, has been carried out by ETSI. No guarantee can be given as to the existence of other IPRs not
referenced in ETSI SR 000 314 (or the updates on the ETSI Web server) which are, or may be, or may become,
essential to the present document.
Trademarks
The present document may include trademarks and/or tradenames which are asserted and/or registered by their owners.
ETSI claims no ownership of these except for any which are indicated as being the property of ETSI, and conveys no
right to use or reproduce any trademark and/or tradename. Mention of those trademarks in the present document does
not constitute an endorsement by ETSI of products, services or organizations associated with those trademarks.
DECT™, PLUGTESTS™, UMTS™ and the ETSI logo are trademarks of ETSI registered for the benefit of its
Members. 3GPP™, LTE™ and 5G™ logo are trademarks of ETSI registered for the benefit of its Members and of the
3GPP Organizational Partners. oneM2M™ logo is a trademark of ETSI registered for the benefit of its Members and of ®
the oneM2M Partners. GSM and the GSM logo are trademarks registered and owned by the GSM Association.
Foreword
This European Standard (EN) has been produced by ETSI Technical Committee Environmental Engineering (EE).
The present document is part 2 of a multi-part deliverable covering Environmental Engineering (EE); Assessment of
material efficiency of ICT network infrastructure goods (circular economy), as identified below:
Part 2: "Server and data storage product secure data deletion functionality";
Part 3: "Server and data storage product availability of firmware and of security updates to firmware";
Part 5: "Server and data storage product disassembly and disassembly instruction".
NOTE: Part 1 and Part 4 have been cancelled as their intended content is already covered by other standards.
National transposition dates
Date of adoption of this EN: 24 April 2025
Date of latest announcement of this EN (doa): 31 July 2025
Date of latest publication of new National Standard
or endorsement of this EN (dop/e): 31 January 2026
Date of withdrawal of any conflicting National Standard (dow): 31 January 2026
ETSI
5 ETSI EN 303 800-2 V1.1.1 (2025-06)
Modal verbs terminology
In the present document "shall", "shall not", "should", "should not", "may", "need not", "will", "will not", "can" and
"cannot" are to be interpreted as described in clause 3.2 of the ETSI Drafting Rules (Verbal forms for the expression of
provisions).
"must" and "must not" are NOT allowed in ETSI deliverables except when used in direct citation.
Introduction
The present document addresses the requirements on secure data deletion. It aims to give a valid and compliant method
to assess if this specific requirement on data deletion has been met.
The present document was developed jointly by ETSI TC EE and ITU-T Study Group 5 and published by ITU and
ETSI as Recommendation ITU-T L.ME_DD [i.4] and ETSI EN 303 800-2 (the present document), which are
technically equivalent.
ETSI
6 ETSI EN 303 800-2 V1.1.1 (2025-06)
1 Scope
The present document specifies a method for the verification of compliance with the requirements on the secure data
deletion functionality for:
1) servers; and
2) data storage equipment.
The present document covers demonstration of compliance with the data deletion requirements:
• instructions on how to use the functionality;
• the techniques used; and
• the supported secure data deletion standard(s), if applicable.
The following products are out of scope of the present document:
• servers intended for embedded applications;
• servers classified as small scale servers in terms of Regulation (EU) No 617/2013 [i.2];
• servers with more than four processor sockets;
• server appliances;
• large servers;
• fully fault tolerant servers;
• network servers;
• small data storage products;
• large data storage products;
• servers or data storage products which in addition are used in means of transport for persons or goods;
NOTE: See Directive 2009/125/EC [i.1].
• data storage devices that are not included in the product placed on the market by the Manufacturer, their
authorized representatives or importer, and are not included in modifications or updates provided or specified
by the manufacturer, their authorized representatives or importer.
2 References
2.1 Normative references
References are either specific (identified by date of publication and/or edition number or version number) or
non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the
referenced document (including any amendments) applies.
Referenced documents which are not found to be publicly available in the expected location might be found in the
ETSI docbox.
NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee
their long term validity.
The following referenced documents are necessary for the application of the present document.
[1] IEEE 2883™-2022: "IEEE Standard for Sanitizing Storage".
ETSI
7 ETSI EN 303 800-2 V1.1.1 (2025-06)
[2] ETSI EN 303 800-5: "Environmental Engineering (EE); Assessment of material efficiency of ICT
network infrastructure goods (circular economy); Part 5: Server and data storage product
disassembly and disassembly instruction".
2.2 Informative references
References are either specific (identified by date of publication and/or edition number or version number) or
non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the
referenced document (including any amendments) applies.
NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee
their long term validity.
The following referenced documents are not necessary for the application of the present document but they assist the
user with regard to a particular subject area.
[i.1] Directive 2009/125/EC of the European Parliament and of the Council of 21 October 2009
establishing a framework for the setting of ecodesign requirements for energy-related products
(recast).
[i.2] Commission Regulation (EU) No 617/2013 of 26 June 2013 implementing Directive 2009/125/EC
of the European Parliament and of the Council with regard to ecodesign requirements for
computers and computer servers.
[i.3] European Commission Notice 2016/C 272/01: "The 'Blue Guide' on the implementation of EU
products rules 2016".
[i.4] Recommendation ITU-T L.ME_DD: "Assessment of material efficiency of ICT network
infrastructure goods (circular economy)- Part - 2: server and data storage product secure data
deletion functionality".
[i.5] Commission Regulation (EU) 2019/424 of 15 March 2019 laying down ecodesign requirements
for servers and data storage products pursuant to Directive 2009/125/EC of the European
Parliament and of the Council and amending Commission Regulation (EU) No 617/2013.
3 Definition of terms, symbols and abbreviations
3.1 Terms
For the purposes of the pres
...
SLOVENSKI STANDARD
01-julij-2025
Okoljski inženiring (EE) - Ocenjevanje materialne učinkovitosti opreme omrežne
infrastrukture IKT (krožno gospodarstvo) - 2. del: Funkcionalnost varnega brisanja
podatkov na strežnikih in podatkovno pomnilniških izdelkih
Environmental Engineering (EE) - Assessment of material efficiency of ICT network
infrastructure goods (circular economy) - Part 2: Server and data storage product secure
data deletion functionality
Ta slovenski standard je istoveten z: ETSI EN 303 800-2 V1.1.1 (2025-06)
ICS:
19.040 Preskušanje v zvezi z Environmental testing
okoljem
35.220.01 Naprave za shranjevanje Data storage devices in
podatkov na splošno general
2003-01.Slovenski inštitut za standardizacijo. Razmnoževanje celote ali delov tega standarda ni dovoljeno.
EUROPEAN STANDARD
Environmental Engineering (EE);
Assessment of material efficiency of ICT network
infrastructure goods (circular economy);
Part 2: Server and data storage product secure data
deletion functionality
2 ETSI EN 303 800-2 V1.1.1 (2025-06)
Reference
DEN/EE-EEPS47-2
Keywords
environment, e-waste management, KPI, server,
storage, waste management
ETSI
650 Route des Lucioles
F-06921 Sophia Antipolis Cedex - FRANCE
Tel.: +33 4 92 94 42 00 Fax: +33 4 93 65 47 16
Siret N° 348 623 562 00017 - APE 7112B
Association à but non lucratif enregistrée à la
Sous-Préfecture de Grasse (06) N° w061004871
Important notice
The present document can be downloaded from the
ETSI Search & Browse Standards application.
The present document may be made available in electronic versions and/or in print. The content of any electronic and/or
print versions of the present document shall not be modified without the prior written authorization of ETSI. In case of any
existing or perceived difference in contents between such versions and/or in print, the prevailing version of an ETSI
deliverable is the one made publicly available in PDF format on ETSI deliver repository.
Users should be aware that the present document may be revised or have its status changed,
this information is available in the Milestones listing.
If you find errors in the present document, please send your comments to
the relevant service listed under Committee Support Staff.
If you find a security vulnerability in the present document, please report it through our
Coordinated Vulnerability Disclosure (CVD) program.
Notice of disclaimer & limitation of liability
The information provided in the present deliverable is directed solely to professionals who have the appropriate degree of
experience to understand and interpret its content in accordance with generally accepted engineering or
other professional standard and applicable regulations.
No recommendation as to products and services or vendors is made or should be implied.
In no event shall ETSI be held liable for loss of profits or any other incidental or consequential damages.
Any software contained in this deliverable is provided "AS IS" with no warranties, express or implied, including but not
limited to, the warranties of merchantability, fitness for a particular purpose and non-infringement of intellectual property
rights and ETSI shall not be held liable in any event for any damages whatsoever (including, without limitation, damages
for loss of profits, business interruption, loss of information, or any other pecuniary loss) arising out of or related to the use
of or inability to use the software.
Copyright Notification
No part may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and
microfilm except as authorized by written permission of ETSI.
The content of the PDF version shall not be modified without the written authorization of ETSI.
The copyright and the foregoing restriction extend to reproduction in all media.
© ETSI 2025.
All rights reserved.
ETSI
3 ETSI EN 303 800-2 V1.1.1 (2025-06)
Contents
Intellectual Property Rights . 4
Foreword . 4
Modal verbs terminology . 5
Introduction . 5
1 Scope . 6
2 References . 6
2.1 Normative references . 6
2.2 Informative references . 7
3 Definition of terms, symbols and abbreviations . 7
3.1 Terms . 7
3.2 Symbols . 9
3.3 Abbreviations . 9
4 Assessment of the secure data deletion functionality for servers and data storage products . 10
4.1 Provision of functionality to perform secure data deletion . 10
4.1.1 Availability of functionality . 10
4.1.2 Availability of clear or purge method . 10
4.1.3 Availability of destruct method and additional methods . 10
4.1.4 Returning Server or Data Storage Equipment to usable state . 10
4.2 Data exclusions from data deletion provision . 10
4.3 Registration . 11
5 End-user verification of successful Data Deletion . 11
5.1 Means of end-user verification of the effectiveness of the deletion method . 11
5.2 Record of Data Deletion . 11
6 Assessment of data deletion documentation and functionality . 12
6.1 Means of assessment . 12
6.2 Verification of secure data deletion documentation . 12
6.2.1 Information on secure data deletion functionality . 12
History . 13
ETSI
4 ETSI EN 303 800-2 V1.1.1 (2025-06)
Intellectual Property Rights
Essential patents
IPRs essential or potentially essential to normative deliverables may have been declared to ETSI. The declarations
pertaining to these essential IPRs, if any, are publicly available for ETSI members and non-members, and can be
found in ETSI SR 000 314: "Intellectual Property Rights (IPRs); Essential, or potentially Essential, IPRs notified to
ETSI in respect of ETSI standards", which is available from the ETSI Secretariat. Latest updates are available on the
ETSI IPR online database.
Pursuant to the ETSI Directives including the ETSI IPR Policy, no investigation regarding the essentiality of IPRs,
including IPR searches, has been carried out by ETSI. No guarantee can be given as to the existence of other IPRs not
referenced in ETSI SR 000 314 (or the updates on the ETSI Web server) which are, or may be, or may become,
essential to the present document.
Trademarks
The present document may include trademarks and/or tradenames which are asserted and/or registered by their owners.
ETSI claims no ownership of these except for any which are indicated as being the property of ETSI, and conveys no
right to use or reproduce any trademark and/or tradename. Mention of those trademarks in the present document does
not constitute an endorsement by ETSI of products, services or organizations associated with those trademarks.
DECT™, PLUGTESTS™, UMTS™ and the ETSI logo are trademarks of ETSI registered for the benefit of its
Members. 3GPP™, LTE™ and 5G™ logo are trademarks of ETSI registered for the benefit of its Members and of the
3GPP Organizational Partners. oneM2M™ logo is a trademark of ETSI registered for the benefit of its Members and of ®
the oneM2M Partners. GSM and the GSM logo are trademarks registered and owned by the GSM Association.
Foreword
This European Standard (EN) has been produced by ETSI Technical Committee Environmental Engineering (EE).
The present document is part 2 of a multi-part deliverable covering Environmental Engineering (EE); Assessment of
material efficiency of ICT network infrastructure goods (circular economy), as identified below:
Part 2: "Server and data storage product secure data deletion functionality";
Part 3: "Server and data storage product availability of firmware and of security updates to firmware";
Part 5: "Server and data storage product disassembly and disassembly instruction".
NOTE: Part 1 and Part 4 have been cancelled as their intended content is already covered by other standards.
National transposition dates
Date of adoption of this EN: 24 April 2025
Date of latest announcement of this EN (doa): 31 July 2025
Date of latest publication of new National Standard
or endorsement of this EN (dop/e): 31 January 2026
Date of withdrawal of any conflicting National Standard (dow): 31 January 2026
ETSI
5 ETSI EN 303 800-2 V1.1.1 (2025-06)
Modal verbs terminology
In the present document "shall", "shall not", "should", "should not", "may", "need not", "will", "will not", "can" and
"cannot" are to be interpreted as described in clause 3.2 of the ETSI Drafting Rules (Verbal forms for the expression of
provisions).
"must" and "must not" are NOT allowed in ETSI deliverables except when used in direct citation.
Introduction
The present document addresses the requirements on secure data deletion. It aims to give a valid and compliant method
to assess if this specific requirement on data deletion has been met.
The present document was developed jointly by ETSI TC EE and ITU-T Study Group 5 and published by ITU and
ETSI as Recommendation ITU-T L.ME_DD [i.4] and ETSI EN 303 800-2 (the present document), which are
technically equivalent.
ETSI
6 ETSI EN 303 800-2 V1.1.1 (2025-06)
1 Scope
The present document specifies a method for the verification of compliance with the requirements on the secure data
deletion functionality for:
1) servers; and
2) data storage equipment.
The present document covers demonstration of compliance with the data deletion requirements:
• instructions on how to use the functionality;
• the techniques used; and
• the supported secure data deletion standard(s), if applicable.
The following products are out of scope of the present document:
• servers intended for embedded applications;
• servers classified as small scale servers in terms of Regulation (EU) No 617/2013 [i.2];
• servers with more than four processor sockets;
• server appliances;
• large servers;
• fully fault tolerant servers;
• network servers;
• small data storage products;
• large data storage products;
• servers or data storage products which in addition are used in means of transport for persons or goods;
NOTE: See Directive 2009/125/EC [i.1].
• data storage devices that are not included in the product placed on the market by the Manufacturer, their
authorized representatives or importer, and are not included in modifications or updates provided or specified
by the manufacturer, their authorized representatives or importer.
2 References
2.1 Normative references
References are either specific (identified by date of publication and/or edition number or version number) or
non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the
referenced document (including any amendments) applies.
Referenced documents which are not found to be publicly available in the expected location might be found in the
ETSI docbox.
NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee
their long term validity.
The following referenced documents are necessary for the application of the present document.
[1] IEEE 2883™-2022: "IEEE Standard for Sanitizing Storage".
ETSI
7 ETSI EN 303 800-2 V1.1.1 (2025-06)
[2] ETSI EN 303 800-5: "Environmental Engineering (EE); Assessment of material efficiency of ICT
network infrastructure goods (circular economy); Part 5: Server and data storage product
disassembly and disassembly instruction".
2.2 Informative references
References are either specific (identified by date of publication and/or edition number or version number) or
non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the
referenced document (including any amendments) applies.
NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee
their long term validity.
The following referenced documents are not necessary for the application of the present document but they assist the
user with regard to a particular subject area.
[i.1] Directive 2009/125/EC of the European Parliament and of the Council of 21 October 2009
establishing a framework for the setting of ecodesign requirements for energy-related products
(recast).
[i.2] Commission Regulation (EU) No 617/2013 of 26 June 2013 implementing Directive 2009/125/EC
of the European Parliament and of the Council with regard to ecodesign requirements for
computers and computer servers.
[i.3] European Commission Notice 2016/C 272/01: "The 'Blue Guide' on the implementation of EU
products rules 2016".
[i.4] Recommendation ITU-T L.ME_DD: "Assessment of m
...











