Dell Data Protection | Encryption Guia do Utilizador Página 185

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
Vista de página 184
Enterprise Edition Administrator Guide 185
Glossary
Activate(d) - Activation occurs when the computer has been registered with the Server and has received at least an initial
set of policies.
Active Directory (AD) - A directory service created by Microsoft for Windows domain networks.
Cached Credentials - Cached credentials are credentials that are added to the PBA database when a user successfully
authenticates with Active Directory. This information about the user is retained so that a user can log in when they do not
have a connection to Active Directory (for example, when taking their laptop home).
Common Encryption – The Common key makes files accessible to all managed users on the device where they were created.
Deactivate(d) - Deactivation occurs when SED management is turned to FALSE in the Server. Once the computer is
deactivated, the PBA database is deleted and there is no longer any record of cached users.
External Users - Users outside the organization’s domain address. Likewise, Internal Users are users inside the
organization’s domain address.
Hardware Crypto Accelerator (HCA) – HCA cards enable hardware-based encryption and provide advanced security.
During setup, the HCA card is locked to the motherboard, and a unique key is created, encrypted, signed, and stored.
Thereafter, access to your encrypted data is allowed only on that specific computer and only with the correct user
authentication.
The newest release of DDP|E offers enhanced Preboot Authentication (PBA) for the Dell HCA. The enhanced PBA uses
a separate preboot partition to provide encryption of the full windows volume and optional secondary partitions. Enhanced
PBA provides features equivalent to PBA for self-encrypting drives, such as network authentication, multi-user support, and
network unlock. When HCA policies are in play, System Data Encryption (SDE) policies are ignored.
Legacy Hardware Crypto Accelerator (HCA) – Computers equipped with legacy HCA use a BIOS password to emulate
preboot authentication. The BIOS of most of these computers can be upgraded to take advantage of the newest HCA
features used by DDP|E v8.3 and later. If the BIOS cannot be upgraded, DDP|E can be installed and run, but the computer
will not have access to the newest features of HCA.
See Also Hardware Crypto Accelerator (HCA).
Preboot Authentication (PBA)– Preboot Authentication (PBA) serves as an extension of the BIOS or boot firmware and
guarantees a secure, tamper-proof environment external to the operating system as a trusted authentication layer. The PBA
prevents anything being read from the hard disk, such as the operating system, until the user has confirmed they have the
correct credentials.
Protected - For SED, a computer is protected once it has been activated and the PBA is deployed.
Vista de página 184
1 2 ... 180 181 182 183 184 185 186 187 188

Comentários a estes Manuais

Sem comentários