Reference Guide
Security Management Server v10.2.7 AdminHelp
167
Operating System
Drives
Configure Specific
Crypto Algorithms
and Cipher Suites
Settings on
Operating System
Drives
2.16.840.1.101.3.4.1.2;2.16.840.1.101.3.4.1.42
String -
2.16.840.1.101.3.4.1.2;
2.16.840.1.101.3.4.1.42
Specific Crypto Algorithms and Cipher Suites allowed on operating system
drives.
To use this policy, Configure Use of Hardware-Based Encryption for
Operating System Drives must be set to Selected.
Encryption Type for
Operating System
Drives
Full Encryption
Full Encryption
Used Space Only Encryption
Select the type of encryption to use for operating system drives.
Configure Use of
Passwords for
Operating System
Drives
Not Configured
Enabled
Disabled
Not Configured
Configure password requirements for Operating System Drives.
When Disabled, this policy element will force the option to be blocked
from being used, and will not proceed until it is met.
When Enabled, this policy element will force the option to be used, and
will not proceed unless it is met.
When Not Configured, this policy element will consume the default action
to do nothing.
Configure Password
Complexity for
Operating System
Drives
Allow
Allow
Require
Do Not Allow
When set to Require, a connection to a domain controller is necessary to
validate the complexity of the password. When set to Allow, a connection
to a domain controller is attempted to validate complexity, but if no
domain controller is found, the password will still be accepted. When set
to Do Not Allow, no password complexity validation is done.
To use this policy, Configure Use of Passwords for Operating System Drives
must be set to Enabled.
Minimum Password
Length for
Operating System
Drives
8
8-256
The default value is a password length of 8 characters. 8-256 characters
are allowed.
To use this policy, Configure Use of Passwords for Operating System Drives
must be set to Enabled.
Require ASCII-Only
Passwords for
Operating System
Drives
Not Selected
Selected
Not Selected
Require ASCII-only passwords for operating system drives to create
stronger passwords.
To use this policy, Configure Use of Passwords for Operating System Drives
must be set to Enabled.
Use Enhanced Boot
Configuration Data
Profile
Disabled
Enabled
Disabled
Not Configured
Set this policy to Enable to allow the verification and exclusion of BCD
settings.
When Disabled, this policy element will force the option to be blocked
from being used, and will not proceed until it is met.
When Enabled, this policy element will force the option to be used, and
will not proceed unless it is met.
When Not Configured, this policy element will consume the default action
to do nothing.
Verify Additional
BCD Settings
String
String
Specify the additional Boot Configuration settings.
To use this policy, Use Enhanced Boot Configuration Data Profile must be
set to Enabled.
Exclude Additional
String
String