Heartbleed (CVE-2014-0160) System Restore Process on WD Personal Cloud Drives

“Please keep in mind that due to the security configuration for your My Cloud device as a personal cloud (versus a public cloud), there may be an additional process to address the security for your content in the future. In the very unlikely event your My Cloud drive had been compromised due to the Heartbleed Bug prior to applying the WD-provided firmware update, we are developing an automated security certificate process for availability, but if you prefer to address this issue now, please contact WD Support.”

http://wdc.custhelp.com/app/answers/detail/a_id/11435/session/L2F2LzEvdGltZS8xNDA2NDAxNjU5L3NpZC8qZlJ2WmctbA%3D%3D

Heartbleed (CVE-2014-0160) System Restore Process on WD Personal Cloud Drives

To further protect your My Cloud device from the Heartbleed vulnerability, please follow the procedures below:

http://wdc.custhelp.com/app/answers/detail/a_id/11709/p/247%2C487/c/130/session/L3RpbWUvMTQwNjM4NTYwNS9zaWQvVVVtTy1mLWw%3D

So to get a new certificate, I have to do this procedure, and the firmware update was not enough?

Hi, this second step was announced on the first KB that was published " there may be an additional process to address the security for your content in the future.". As the KB states the second one is to to further protect your My Cloud device from the Heartbleed vulnerability.