File Share Encryption

 View Only
  • 1.  After hard shut down and logging into PGP, only get windows recovery

    Posted Apr 17, 2013 12:11 PM

    As the title states, I've had 3+ users do a hard shut down, then reboot, enter their credentials at the PGP pre-boot screen.. Then no matter which option I try for booting windows (Last known good/safe mode/boot normally) I eventually get to Windows System Recovery options. Windows attempts repairs but cannot and I end up having to re-image the machine. Any ideas?



  • 2.  RE: After hard shut down and logging into PGP, only get windows recovery

    Posted Apr 18, 2013 04:56 AM

    This doesn't sound like a problem related to WDE.  You successfully authenticate at the pre-boot screen, then the task of booting is handed over to the MBR.  In this case its going directly to System Recovery.  Again, doesn't sound like a PGP problem, but a Windows problem.

     

    If you can replicate this without an encrypted disk however?



  • 3.  RE: After hard shut down and logging into PGP, only get windows recovery

    Posted Apr 18, 2013 12:18 PM

    I should have mentioned some background. I'm doing onsite support for an office of about 300 users/computers. I've had what I have described above happen 5 times now, within 2 weeks of deploying PGP software.

    Before this, sure I'd have occasional disk failure, or corruption (where I could run something like chkdsk to repair the drive), but I'd never get stuck in this loop of Windows System Recovery.

    I could agree its not a PGP problem, but a problem that seems like it is caused by having PGP.



  • 4.  RE: After hard shut down and logging into PGP, only get windows recovery

    Posted Apr 30, 2013 03:20 AM

    I would suggest trying safe mode. it sounds as though it's encountering a Blue Screen of Death in normal mode and therefore forcing a reboot of the system each time. To attempt to get into safe mode  you have to hit the Enter key at the preboot authentication window (aka BootGuard) and immediately start tapping the F8 key (instantly after hitting enter) if you wait too long you will miss it and have to try again. If you cannot get in with safe mode as an option. i would suggest decrypting the drive by attaching it to another system with Windows and PGP Desktop/Symantec Encryption Desktop installed and attempt to decrypt the drive there. Once the drive is decrypted you can run a chkdsk c: /f and also boot the OS and run sfc /scannow to see if that helps.

    If the problem persists. I would be looking verifying that you are on the latest version of Symantec Encryption Desktop (10.3.0 MP1) for Windows before proceeding with the troubleshooting due to a known issue with a legacy kernel filter driver we had on Windows 7.  See KB http://www.symantec.com/docs/TECH201447 - notice that the article talks about interaction issue with Symantec Encryption Desktop and Symantec Endpoint Encryption Removable Storage.  But we have seen this same interaction problem with other third party drivers which also have a legacy kernel filter driver such as McAfee Antivirus.



  • 5.  RE: After hard shut down and logging into PGP, only get windows recovery

    Posted May 06, 2013 03:15 AM

    Did my tips help at all?



  • 6.  RE: After hard shut down and logging into PGP, only get windows recovery

    Posted May 06, 2013 11:54 AM

    Hi PGP_Ben,

    Sorry for the late reply. I've tried Safe Mode, along with Last Known good, and Safe Mode with Networking without success.

    I've also tried dycrypting the HDD externally on another working maching with PGP, then ran chkdsk /f while the drive was attached to the other machine. Put the drive back in the original system, and was still stuck. I had not tried sfc /scannow as I couldn't get into the OS on the drive.

    Your link is interesting and I will have to try the workaround provided the next time I encounter this to see if it can resolve the issue. I'd love to go to 10.3 but might be a while as it usually takes a while to roll out an update in my organization.



  • 7.  RE: After hard shut down and logging into PGP, only get windows recovery

    Posted May 07, 2013 09:15 AM

    You know you can get a cmd console from System Recovery?  you can run sfc /scannow from there