Reference Guide

Security Management Server Virtual - AdminHelp v9.8
267
you have full read/write access to removable
storage.
If you choose not to enc
rypt removable
storage and this policy is set to Read
-Only,
you cannot read or delete existing files on
the unencrypted removable storage, but the
Encryption client will not allow any files to
be edited on, or added to, the removable
storage unless it is e
ncrypted.
EMS Block Access to UnShieldable Media
Selected
Block access to any removable storage that
is less than 55 MB and thus has insufficient
storage capacity to host a Removable Media
Encryption client (such as a 1.44MB floppy
disk).
All access is bl
ocked if Encrypt External
Media and this policy are both True. If
Encrypt External Media is True, but this
policy is False, data can be read from the
unencryptable removable storage, but write
access to the media is blocked.
If Encrypt External Media is Fa
lse, then this
policy has no effect and access to
unencryptableremovable storage is not
impacted.
See advanced settings
Policy Default Setting
Description
Media Encryption Settings
This technology allows definition of what media encryption events to retain in logs.
Event Retention
"security", "fail", "30"
"security", "success", "30"
"application", "error", "30"
"application", "warn", "15"
"application", "info", "5"
"application", "debug",
"5"
Defines the amount of time (in days) that
Encryption External Media, HCA, and PCS
event types are maintained in the Server
event log.
Each event type is defined by category and
level. You may set different retention times
for each event level in each c
ategory.
The "Security" category represents events
related to user authentication,
authorization, or encryption. This includes
events for Dell
-encrypting devices, updating
security policies, or failed authentication
attempts. "Security" events are further
differentiated by a "fail" or "success"
indicating the outcome of the event.
The "Application" category (application type
event, rather than a security type event)
represents events related to general
application actions. These events are further
different
iated by a set of severity levels -
"error", "warn", "info", and "debug". You
should use longer retention times for more
severe levels.
Removable Media Policies that Require Logoff