2.3 Full Disk Encryption

Full Disk Encryption enhancements will enable you to:

  • Encrypt UEFI enabled devices: Employ Disk Encryption policies on devices that are equipped and enabled to use UEFI firmware. This enhancement also includes the option to use GUID partition tables (GPT) to define and encrypt up to 128 volumes per disk.

  • Use additional smart card readers: Create new Disk Encryption policies with enhanced hardware compatibility for pre-boot authentication. This feature includes a new auto-setting that checks for compatibility, as well as the capability to modify the DMI configuration during policy application in the event of a hardware compatibility issue.

    IMPORTANT:To get the two enhancements listed above, you need to remove ZENworks 2017 or earlier version Disk Encryption policies and decrypt encrypted devices prior to updating the devices to ZENworks 2017 Update 1. After updating devices to Update 1, you can create and apply new Update 1 policies to re-encrypt the devices. For more information, see the ZENworks 2017 Update 1 - Full Disk Encryption Update Reference.

  • Enable agent events for disk encryption status: In the Agent Events Configuration, you can enable two new events that prompt Agent Event messages when encryption or decryption of disk volumes starts. This enhancement adds to the encryption/decryption completion events that we provided in the 2017 release.