Reference Guide

Manage Policies
encryption is disabled,
regardless of other
policy values. Selected
means that all data not
encrypted by other
Intelligent Encryption
policies are encrypted
per the SDE Encryption
Rules policy. Changing
the value of this
policy requires a
reboot.
SDE Encryption Rules
String
F#:\
-^%ENV:SYSTEMDRIVE%\System Volume Information
-^%ENV:SYSTEMROOT%\;dll.exe.sys.ocx.man.cat.manifest.policy
-^%ENV:SYSTEMROOT%\System32
-^%ENV:SYSTEMROOT%\SysWow64
-^%ENV:SYSTEMROOT%\WinSxS
-^%ENV:SYSTEMROOT%\Fonts
^3@%ENV:SYSTEMROOT%\SYSTEM32\;exe
-^3@%ENV:SYSTEMROOT%\SYSTEM32\cmd.exe;exe
-^3@%ENV:SYSTEMROOT%\SYSTEM32\autochk.exe;exe
-^3@%ENV:SYSTEMROOT%\SYSTEM32\winresume.exe;exe
-^F#:\bootmgr
-^F#:\boot
-^@%ENV:SYSTEMDRIVE%\;vol
-^%ENV:SYSTEMDRIVE%\Program Files\PGP Corporation
-^3%ENV:SYSTEMDRIVE%\PGPWDE00
-^3%ENV:SYSTEMDRIVE%\PGPWDE01
-^3%ENV:SYSTEMDRIVE%\PGPWDE02
-^3%ENV:SYSTEMDRIVE%\PGPWDE03
-^%ENV:SYSTEMDRIVE%\Program Files\Symantec
-^%ENV:SYSTEMDRIVE%\Program Files (x86)\Symantec
-^%ENV:SYSTEMDRIVE%\Program Files\Common Files\Symantec
Shared
-^%ENV:SYSTEMDRIVE%\Program Files (x86)\Common
Files\Symantec Shared
-^%ENV:SYSTEMDRIVE%\ProgramData\Symantec
-^3%ENV:SYSTEMDRIVE%\SafeBoot.fs
-^3%ENV:SYSTEMDRIVE%\SafeBoot.rsv
-^3%ENV:SYSTEMDRIVE%\SafeBoot.csv
-^3%ENV:SYSTEMDRIVE%\Program Files\McAfee
-^3%ENV:SYSTEMDRIVE%\Program Files\Common Files\McAfee
Encryption rules to be
used to encrypt/not
encrypt certain drives,
directories, and
folders. See
Encryption
Rules for information.
SDE Encryption Rules
may be changed as
appropriate for your
environment. However,
these defaults have
been tested
extensively. Removing
these exclusions may
result in Windows
issues, particularly
after applying patch
updates.
Contact ProSupport for
guidance if you are
unsure about changing
the values.
124