Reference Guide
Security Management Server - AdminHelp v9.8
267
you have full read/write access to removable
storage.
If you choose not to encrypt removable
storage and this policy is set to Read
-Only,
you cannot read or delete existing files on
the un
encrypted removable storage, but the
Encryption client will not allow any files to
be edited on, or added to, the removable
storage unless it is encrypted.
EMS Block Access to UnShieldable Media
Selected
Block access to any removable storage that
is less
than 55 MB and thus has insufficient
storage capacity to host a Removable Media
Encryption client (such as a 1.44MB floppy
disk).
All access is blocked if Encrypt External
Media and this policy are both True. If
Encrypt External Media is True, but this
pol
icy is False, data can be read from the
unencryptable removable storage, but write
access to the media is blocked.
If Encrypt External Media is False, then this
policy has no effect and access to
unencryptableremovable storage is not
impacted.
See advanced settings
Policy Default Setting
Description
Media Encryption Settings
This technology allows definition of what media encryption events to retain in logs.
Event Retention
"security", "fa
il", "30"
"security", "success", "30"
"application", "error", "30"
"application", "warn", "15"
"application", "info", "5"
"application", "debug", "5"
Defines the amount of time (in days) that
Encryption External Media, HCA, and PCS
event types are maintain
ed in the Server
event log.
Each event type is defined by category and
level. You may set different retention times
for each event level in each category.
The "Security" category represents events
related to user authentication,
authorization, or encryptio
n. This includes
events for Dell
-encrypting devices, updating
security policies, or failed authentication
attempts. "Security" events are further
differentiated by a "fail" or "success"
indicating the outcome of the event.
The "Application" category (appli
cation type
event, rather than a security type event)
represents events related to general
application actions. These events are further
differentiated by a set of severity levels
-
"error", "warn", "info", and "debug". You
should use longer retention time
s for more
severe levels.
Removable Media Policies that Require Logoff