Service Alerts (1 New)

Enterprise Whole Disk Encryption

Setting up and managing encryption and startup requirements for machines

Department owners and administrators must configure a device for a particular user when they set users up to use SafeBoot on their computers. Refer to the user installation procedure as well. There are several steps for completing the configuration.

Users should be connected to the Internet while you complete this process.

Adding a user and installing the client

  1. Log into the Enterprise Whole Disk Encryption management tool.
  2. Select Add/Remove User.
  3. Select your department.
  4. Enter the UT EID of the user and click Add User.
  5. Let the user know that the account has been created and have them log into the management tool to set up their password and security questions and then download the encryption client (if you allow your users to download and install the client themselves).
  6. Install or have the user install the client.
  7. Restart the computer and have the user log in.
  8. Restart the computer again and have the user log in again.
  9. Warning: If the computer does not restart at this point, the computer is not compatible with SafeBoot. Please refer to the procedure for determining compatibility for more information.

  10. The device connects to the management tool and the machine name is added to the department.

Associating the user with the machine

  1. Log into the Enterprise Whole Disk Encryption management tool.
  2. Select Manage Device and User Access.
  3. Select the user's department and then the device name from the drop-down lists.
  4. Select the user(s). If you have staff who support users, you may want to add them to the machine so that they can continue to log in (using their own SafeBoot login credentials) and provide technical support for the user.
  5. Enable boot protection to require the user to log in with SafeBoot login credentials.
  6. Select the encryption options for the device:
    • Standard Encrypted-All Hard Drives
    • Standard Encrypted-C Drive
    • Standard Unencrypted (not applicable during setup)
    • Standard Uninstall (not applicable during setup)
  7. Click Save Changes to this Device.

The client will connect to the server and receive the encryption instructions. Encryption may take some time, depending on the amount of data.