Endpoint Encryption

 View Only
  • 1.  Unlink AD and SEMS to allow SEMS to manage computers policy

    Posted Jun 18, 2014 10:08 AM

    We have SEMS integrated with Active Directory, but I would like to manage the framework/full disk policies in SEMS with the Symantec Endpoint Encryption Manager without going through AD. Is it possible to unlink these so the objects fall back into SEE Unassigned?



  • 2.  RE: Unlink AD and SEMS to allow SEMS to manage computers policy

    Posted Jun 19, 2014 04:03 AM

    I cannot find any articles on the subject, but from what I recall, there is a "Delete" button within the AD Config tab of the SEEMS Configuration Wizard.  What I can;t recall is if this deletes just the AD Sync config, or if it will delete the computer records from the AD tables or not.

    Pending some official documentation, perhaps take a DB backup and give it a whirl?

    Another unsupported option whould be to locate and delete the contents of the dbo.ADComputers table.  Again, this is from memory so backup and perform at your own risk!