Deployment Guide

Table Of Contents
Policy Aggre
ssive
Protec
tion
for All
Fixed
Drives
and
Extern
al
Drives
PCI
Regula
tion
Data
Breac
h
Regula
tion
HIPAA
Regula
tion
Basic
Protec
tion
for All
Fixed
Drives
and
Ext
Drives
(Defau
lt)
Basic
Protec
tion
for All
Fixed
Drives
Basic
Protec
tion
for
Syste
m
Drive
Only
Basic
Protec
tion
for
Extern
al
Drives
Encry
ption
Disabl
ed
Description
CSIDL_INTERNET_CACHE
for initial encryption, as
well as updates to this
policy.
This policy is applicable
when using Microsoft
Internet Explorer only.
Encrypt
User
Profile
Document
s
True False True encrypts:
The users profile (C:
\Users\jsmith) with
the User data encryption
key
\Users\Public with the
Common encryption key
Encrypt
Windows
Paging
File
True False True encrypts the
Windows paging file. A
change to this policy
requires a reboot.
Managed
Services
String - maximum of 100
entries of 500 characters
each (up to a maximum of
2048 characters)
When a service is managed
by this policy, the service
is started only after the
user is logged in and the
client is unlocked. This
policy also ensures that the
service managed by this
policy is stopped before
the client is locked during
logoff. This policy can also
prevent a user logoff if a
service is unresponsive.
Syntax is one service
name per line. Spaces
in the service name are
supported.
Wildcards are not
supported.
Managed services are not
started if an unmanaged
user logs on.
Policies and Template Descriptions
47