This series I first introduce you to the effect is how to do it, when our add-on client installed MBAM agent, we can make good use of Group Policy to the client issued a security policy, such as the mandatory setting of the last time the disk must be encrypted:
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M02/7F/92/ Wkiol1cjfrmq-if3aasincam6fc990.png "border=" 0 "/>
When the last deadline to have to force encryption, otherwise this box will not disappear, even if the restart of the prompt box will reappear, we can also be issued when the policy to enable users password complexity and password use period, hey:
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M02/7F/94/ Wkiom1cjfe-wdfhdaaolkd5kvcq461.png "border=" 0 "/>
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M02/7F/92/ Wkiol1cjfsdbuhhvaan8kojdc1u213.png "border=" 0 "/>
Of course, the encrypted recovery key is stored in the MBAM data, so the user has not saved the matter, the user can at any time modify their BitLocker encrypted PIN code:
650) this.width=650; "height=" 443 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M01/7F/94/ Wkiom1cjffpsiccdaae-wfy0aki524.png "border=" 0 "/>
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M00/7F/94/ Wkiom1cjffsq0vlkaae2cxusccq517.png "border=" 0 "/>
If the enterprise's policy is more mandatory, to any mobile storage media to be strict discipline that is also no problem, we can set a policy, to the non-BitLocker mobile hard disk or USB stick inserted into the company encrypted computer can only read, cannot write or modify, unless the mobile storage media also encrypted it, Of course the recovery key is also saved on the MBAM server, and is duly completed.
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M00/7F/92/ Wkiol1cjfssa9gqdaahwcymyrne752.png "border=" 0 "/>
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M01/7F/92/ Wkiol1cjfsmtvcbbaaocpisczl0053.png "border=" 0 "/>
650) this.width=650; "height=" 298 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" http://s3.51cto.com/wyfs02/M00/7F/94/ Wkiom1cjff3xwpcwaafc_kk-cso625.png "border=" 0 "/>
If the read out of the file changes to save to the USB drive is also not possible yo:
650) this.width=650; "height=" 484 "title=" image "style=" margin:0px;border:0px;padding-top:0px;padding-right:0px; Padding-left:0px;background-image:none; "alt=" image "src=" Http://s3.51cto.com/wyfs02/M01/7F/94/wKiom1cjFGHBNfs_ Aansiubpies271.png "border=" 0 "/>
So it seems that we take the enterprise computer encryption, to a full range of protection, is the more comprehensive protection of your information AH ~ Such enterprise-level encryption protection, as long as the enterprise is more than Windows 8, it is really non-general value. After the effect of encryption I will introduce the main bar, hehe ~ I will share with you after the user forgot the BitLocker password how to query recovery key effect.
Your support, my motivation.
This article is from the "Zjunsen Microsoft Virtualization" blog, so be sure to keep this source http://rdsrv.blog.51cto.com/2996778/1769027
BitLocker Enterprise Security Encryption Management Series-2