File Share Encryption

 View Only
  • 1.  Configuring WDE for shared Windows desktops

    Posted Jan 31, 2013 12:43 AM
    I need to use WDE to encrypt the hard drives in a medical office. Since staff may use any of several shared computers I am not planning to use SSO, just a single pass phrase for the office. We will not be using any other features of PGP desktop, just WDE. My issue is that the first time a user logs in to a shared computer after WDE 10.3 has been installed the new user dialog pops up and wants them to enter the license key and configure PGP desktop. Is there a way to disable this behavior? Thanks in advance.


  • 2.  RE: Configuring WDE for shared Windows desktops

    Posted Feb 01, 2013 04:37 AM

    If you are using this in a managed environment, you can use SSO, each machine can have up to 120 users.  You need to enable silent enrollment 

    http://www.symantec.com/docs/HOWTO77014



  • 3.  RE: Configuring WDE for shared Windows desktops

    Posted Feb 01, 2013 11:42 PM

    Thanks for the suggestion. This is a very small office (8 machines) and I am not deploying PGP Universal Server.

    Any other thoughts?

    Dave



  • 4.  RE: Configuring WDE for shared Windows desktops

    Posted Feb 04, 2013 03:50 AM

    Do you have a domain controller?  You can still use domain credentials to enable SSO, you can even use SSO without a DC (I think!) as itll just use the local account.  The only thing you need to be aware is every new user who logs into that machine will have to enroll.  Just make sure you make a note of the recovery key as this is the only backdoor into the machine should noone be able to authenticate past the BootGuard