Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling in the Best of Vision on Demand group.

Symantec Device Control recommended encrypted USB thumb drive

Created: 08 Feb 2012 | 7 comments
Norge Dude's picture
0 0 Votes
Login to vote

I've been tasked to find an encrypted USB thumb drive that works flawlessly with Symantec Device Control.

Does anyone have a recommendation?

Thank you!

Comments

Thomas K's picture
08
Feb
2012
0 Votes 0
Login to vote

There were issues on SEP 11

There were issues on SEP 11 with TrueCrypt container files and ADC.

Compatibility between TrueCrypt and Application and Device Control

http://www.symantec.com/business/support/index?pag...

Hope this helps,

Thomas

Norge Dude's picture
08
Feb
2012
0 Votes 0
Login to vote

SEE prevents IronKey from being unlocked

I am interested in specific hardware that is designed as an encrypted USB device, not an unencryped device that happens to run encryption software.

https://support.ironkey.com/article/549

I have yet to locate any information on Symantec's website giving specific information on full encrypted USB thumb drives working within the SEE/Device Control environment. Rather than hunt for vendors that produce encrypted USB drives I thought perhaps Symantec might have a list of vendors they have worked with in the past that have been able to get their devices to work within the environment.

SMLatCST's picture
09
Feb
2012
1 Vote +1
Login to vote

Have you checked...

...if you have the options set within SEE-DC to block the 'Smart Functionality'?  It sounds as if this might be blocking your Ironkey from loading it's own authentication software, and would likely do the same for other encrypted devices.

I'm not aware of a list of supported encrypted removable storage devices though.

It's worth noting that SEE-DC is able to detect PGP and SEE-RS, and manage devices accordingly.  I know you weren't after encryption software but there you go.

khaskins82's picture
09
Feb
2012
1 Vote +1
Login to vote

I can tell you after trying

I can tell you after trying for months to get a Stealth MX drive to work, that it may be difficult.

 

This thumb drive causes a BSOD when swiping a finger. Not consistent. Vendor did not want us to submit a sample device to Symantec. I guess that they felt that their secrets were at risk.

 

I discovered that the unsecured partition is formatted fat16 and that is the issue. Had they formatted it fat32 the problem could be avoided. They were not perceptive to my suggestion.

gilbert08's picture
09
Feb
2012
1 Vote +1
Login to vote

What I implemented is from network drive and USB drive I blocked

What I implemented is from network drive and USB drive I blocked any posible extension files posible cause for source of infection. For encryption, I'm not able to find any settings.

Srikanth_Subra's picture
09
Feb
2012
0 Votes 0
Login to vote

I implemented to block USB

I implemented to block USB drives from network..and blocked some exe and mps file extensions.we are also looking for encryption?

Thanks & Regards,

 Srikanth.S

"Defeat the Defeat before the Defeat Defeats you"
(Swami Vivekananda)

ETH0's picture
10
Feb
2012
0 Votes 0
Login to vote

ironkeys work fine

We are using ironkeys without a problem. When you first connect an ironkey it "shows" itself to the system as a CD-ROM drive. The unlock software of the ironkey is located on this "CD-ROM" drive. When you run the executable you can unlock the usb key and mass storage part of the ironkey is made visible.

If you create an allow policy to only allow read and/or write operations to mass storage devices with the ironkey USB DEVICE ID you can block other mass storage devices and only allow ironkeys.