Reference Guide

Manage Policies
158
Winlogon\CMGShield\GKConnectionsOverride.
The client communicates with Policy Proxies using the GKPORT (the default
is 8000).
If necessary, change that port via the registry key
HKLM\SOFTWARE\Microsoft\WindowsNT\Current
Version\Winlogon\CMGShield\GKPort.
Inherited values for this policy accumulate.
For the client to connect to a Policy Proxy specified in this policy, it must be
in the same group as the Policy Proxy specified during client installation.
Because the client supports up to 255 users per computer, this policy is
available only at the Enterprise policy level.
Policy Proxy Polling
Interval
360
1-1440 minutes
The interval that the Encryption client attempts to poll Policy Proxy for
policy updates, and send inventory information to Policy Proxy.
The Encryption client also attempts to poll Policy Proxy each time a user
logs on.
Allow Activations Selected
This policy is available at the Enterprise, Domain, User Group, and User
levels. This policy is used only by the Encryption client. Other applications
do not have an activation policy setting.
When this policy is selected, Encryption client activations are allowed.
When this policy is not selected, activations are blocked. Blocking
activations is useful for staggering activations, preventing activations
during the initial Dell Server setup, or preventing activations during a
maintenance interruption.
Current Shield State
Activate
Activate, Suspend
Activate is the normal state for an encrypted user. A user must be in this
state to activate a computer.
Select Suspend to require recovery before the user can access the
computer.
When a user is suspended, encrypted data cannot be accessed. The user
can be recovered by changing this policy to Activate, and committing the
policy.
See basic settings
Enable Software
Auto Updates
Not Selected
Selected
Not Selected
Selected enables the client update agent to automatically check for
updates to Encryption client software. If this policy is not selected,
Encryption client auto updates do not take place, regardless of other policy
values. If this policy is selected, the On Premise Update Staging Location
policy must have a network location in its value.
On Premise Update
Staging Location
String
String
This policy defines the network location (UNC) where the Dell Server
stages Encryption client update packages. If a network location is not
specified in this policy, the Enable Software Auto Updates policy should
not be published.
Update Check
Period
10080
1-43200 minutes (1 minute to 30 days)
The period in minutes between checks for software auto updates.
Number of Policy
Update Delays
Allowed
3
0-5000
If Force Logoff/Reboot on Policy Updates is Selected, a non-zero value
allows the user to delay the required logoff or reboot the specified number
of times. Set to zero to disable delays.
Force Logoff /
Reboot on Policy
Updates
Selected
Selected requires either a logoff or a reboot in order for key policy updates
to take effect. Otherwise, these policy updates take effect whenever the
next logoff or reboot occurs.
Policy Viewer
Enabled
Not Selected
When Selected, the user can view their encryption policies from the
Encryption icon in the notification area.
Display Local
Encryption
Processing Control
Not Selected
When Selected, the user sees a menu option in the notification area icon
that allows them to pause/resume encryption/decryption (depending on
what the client is currently doing).