1.0

Table Of Contents
www.vmware.com
222
VMware ACE Administrator’s Manual
Encryption and Authentication Policies
Encryption policies control how a virtual machine’s files are stored. Authentication
policies control who is allowed to use the virtual machine.
Encrypting a Virtual Machine’s Files
If you specify that the virtual machine should be encrypted, the VMware ACE installer
encrypts the virtual machine’s files, including the configuration file and the virtual disk
files, when it installs VMware ACE on the end users computer. The encryption key is
different on each computer.
Encryption is especially useful for virtual machines that may be used on portable
computers and may contain sensitive information. By encrypting the virtual machine,
you protect the data files even if the computer is lost or stolen.
The end user of the virtual machine does not have to think about the encryption. The
end user must use some method of authentication to run VMware ACE, which then
handles the details of encrypting and decrypting the files as needed.
Determining the Authentication Policy
VMware ACE provides several methods for authenticating users. If you select an
authentication method, VMware ACE will not run until the user is authenticated.
No Authentication
If you select None in the policy editor, no authentication is required to launch VMware
ACE and run the virtual machine.
This setting is appropriate only if the virtual machine has no access to sensitive
information and should be widely available. For example, this setting might be
appropriate for distributing virtual machines containing demonstrations you want to
make available without restrictions.
Note: If you want to encrypt the virtual machine, you must require some form of
authentication.
Password Authentication
If you select password authentication, each end user must set a password the first
time VMware ACE runs and enter that password each time VMware ACE runs.
Password authentication may be appropriate in various circumstances — especially if
end users need to run VMware ACE when they are not connected to your
organizations network.