Reference Guide

Security Management Server v10.2.10 AdminHelp
259
^R#:\Calendars
;ppt.doc
.xls.pptx
.docx.xlsx
^R#:\Contacts
;ppt
.doc.xls
.pptx.docx
.xlsx
^R#:
\iPod_Control
;ppt.doc
.xls.pptx
.docx.xlsx
^R#:\Notes
;ppt.doc
.xls.pptx
.docx.xlsx
^R#:\Photos
;ppt.doc
.xls.pptx
.docx.xlsx
Replacing these five rules with the following rule will force
encryption of ppt, pptx, doc, docx, xls, and xlsx files in any
directory on the iPod, including Calendars, Contacts, iPod_Control,
Notes, and Photos:
^R#:\;ppt.doc.xls
.pptx.docx.xlsx
These rules disable or enable encryption for these folders and file
types for all removable devices - not just an iPod. Use care when
defining rules to exclude an iPod from encryption.
These rules have been tested against the following iPods:
iPod Video 30gb fifth generation
iPod Nano 2gb second generation
iPod Mini 4gb second generation
Dell does not recommend the use of the iPod Shuffle, as unexpected
results may occur.
As iPods change, this information could also change, so caution is
advised when allowing the use of iPods on EMS-enabled computers.
Because folder names on iPods are d
ependent on the model of the iPod,
Dell recommends creating an exclusion encryption policy which covers
all folder names, across all iPod models.
EMS Automatic
Authentication
Local
Disabled, Enable Local, Enable Roaming
Local automatic authentication allows the Dell-encrypted media to be
au
tomatically authenticated when inserted in the originally encrypting
computer when the owner of that media is logged in. When the User
Roaming key is
applied to Encryption External Media, Roaming Automatic
Authentication allows Dell-encrypted media to be automatically
authenticated when it is inserted in any Dell-encrypted computer the
media owner is logged into. When automatic authentication is disabl
ed,
users must always manually authenticate to access Dell-encrypted
media.
Disabling Roaming Authentication helps to prevent users from
forgetting their password when they take the media home or share it
with a colleague. Disabling Roaming Authentication also promotes a
sense of awareness from a security perspective for user
s that the data
being written to that media is protected.
EMS Access Encrypted
Data on unShielded
Device
Selected
Selected allows the user to access encrypted data on removable storage
whether the endpoint is encrypted or not.
When this policy is Not Selected, the user can work with encrypted
data when logged on to any encrypted endpoint. The user cannot work
with encrypted data using any unencrypted device.