Reference Guide
Security Management Server v10.2.7 AdminHelp
301
Event Retention
"security", "fail", "30"
"security", "success", "30"
"application", "erro
r", "30"
"application", "warn", "15"
"application", "info", "5"
"application", "debug", "5"
Defines the amount of time (in days) that
Encryption External Media, and PCS event types
are maintained in the event log.
Each event type is defined by category and
level.
You may set different retention times for each
event level in each category.
The Security category represents events related
to user authentication, authorization, or
encryption. This includes events for Dell
-
encrypting devices, updating security p
olicies, or
failed authentication attempts. Security events
are further differentiated by a fail or success
indicating the outcome of the event.
The Application category (application type event,
rather than a security type event) represents
events related
to general application actions.
These events are further differentiated by a set of
severity levels
- error, warn, info, and debug. You
should use longer retention times for more severe
levels.
Removable Media Policies that Require Logoff
• Windows Media Encryption
• EMS Scan External Media
• EMS Encryption Algorithm
• EMS Exclude CD/DVD Encryption
• EMS Data Encryption Key
Advanced Removable Media Encryption
A note about Removable Media Encryption policies: Mac Media Encryption policies are device-based
policies. This is different behavior than Windows Media Encryption, which are user-based.
Policy descriptions also display in tooltips in the Management Console. In this table, master policies are
in bold font.
Policy Default Setting Description
Windows Media Encryption
This technology works on Windows computers using Dell Encryption External Media to encrypt data on
removable devices, which can be accessed using a user-defined password. These policies allow
configuration of the Encryption External Media password requirements and the removable media
allowed.
Windows Media Encryption Off
This policy must be selected to use all other removable media policies. Not
Selected means that no encryption of removable media takes place, regardless of
other policy values.










