Deployment Guide

Policy Aggre
ssive
Protec
tion
for All
Fixed
Drives
and
Extern
al
Drives
PCI
Regula
tion
Data
Breac
h
Regula
tion
HIPAA
Regula
tion
Basic
Protec
tion
for All
Fixed
Drives
and
Ext
Drives
(Defau
lt)
Basic
Protec
tion
for All
Fixed
Drives
Basic
Protec
tion
for
Syste
m
Drive
Only
Basic
Protec
tion
for
Extern
al
Drives
Encry
ption
Disabl
ed
Description
media without
authenticating can be
caught. Files can be added
to the media if
authentication is declined,
but encrypted data cannot
be accessed. The files
added are not encrypted in
this case, so the next time
the media is authenticated
(to work with encrypted
data), any files that may
have been added are
scanned and encrypted.
EMS
Access
Encrypted
Data on
unShielde
d Device
True True allows the user to
access encrypted data on
removable storage
whether the endpoint is
encrypted or not.
EMS
Device
Whitelist
This policy allows the
specification of removable
media devices to exclude
from encryption. Any
removable media devices
not on this list are
protected. Maximum of
150 devices with a
maximum of 500
characters per
PNPDeviceID. Maximum of
2048 total characters
allowed.
To find the PNPDeviceID
for removable storage:
1. Insert the removable
storage device into a
Encrypted computer.
2. Open the
EMSService.log in
C:\Programdata\Dell
\Dell Data Protection
\Encryption\EMS.
3. Find "PNPDeviceID="
For example: 14.03.18
18:50:06.834 [I]
[Volume "F:\"]
PnPDeviceID =
USBSTOR
56
Policies and Template Descriptions