12.07.2015 Views

Endpoint Encryption for Files and Folders 3.2.1 Quick Start ... - McAfee

Endpoint Encryption for Files and Folders 3.2.1 Quick Start ... - McAfee

Endpoint Encryption for Files and Folders 3.2.1 Quick Start ... - McAfee

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Creating <strong>Encryption</strong> PoliciesCreating <strong>Encryption</strong> PoliciesFor more detailed in<strong>for</strong>mation about <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> Policies,see the <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> Administration Guide. Note that<strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> policies are not the same as Microsoft®ActiveDirectory policies (GPOs).<strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> Policies define what functions a user canper<strong>for</strong>m with the <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> Client. For example, theuser’s ability to create their own encrypted files can be switched off, as can the user'sability to manually decrypt data; however, you do not need to be able to decrypt a fileto access it.<strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> policies also control the automatic encryptionof in<strong>for</strong>mation. For example, you can specify that all .doc files should be created asencrypted, or all files in “My Documents” should be encrypted, or, a folder on anetwork share.A policy may also specify that data written to removable media, such as USB memorydevices <strong>and</strong> removable hard disks shall always automatically be encrypted.The default settings <strong>for</strong> a new policy group, or new policy object, prevent anysensitive/critical operation. If you want to allow access to the functions of <strong>Endpoint</strong><strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> you need to change the settings of the correspondingpolicy. An example of how to edit an individual policy is described next. As with allobjects in the <strong>Endpoint</strong> <strong>Encryption</strong> Central directory, a policy may be individuallyedited, or only edited through the settings at the group level (controlled group).To create a <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> policy, follow the schema on thenext pages.| 23

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!