This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

BitLocker encryption management on Windows Server operating systems

I would like to manage the BitLocker ( not Safeguard ) encryption on my various Windows servers. I am currently doing this successfully with the Windows 10 computers. In Sophos Central\My Products\Encryption I do not see any of the server objects listed so I cannot add them to the  encryption policy that I have added the workstations to. I do not see encryption listed as a policy type that I can create under My Products\Server Protection. If I go to the Summary under the server objects I do not see "Device Encryption" listed as an installed component on the servers either even though it was included in the Endpoint Protection package that I deployed to all servers and workstations. 

Thanks, 



This thread was automatically locked due to age.

Top Replies

  • I understand your point of view, but the SGN product was not built to that use case. It was designed for a large scale managed encryption solution that developed out of the LanCrypt product we used to sell. 

    Originally we provided our own encryption algo and a bootloader that moved the OS into an encrypted sub-set of the target drive. It provided true opaque protection of the drive. It came with a cost, however, and the performance hit combined with the points I outlined above led to there never being a server-target SGN solution.

    For smaller use cases - we have Central Device Encryption which is still focused on an endpoint not a server - you will notice we have no policy option for encryption in Central. 

    However, if there is sufficient market appetite for a server based encryption solution it can be looked at. I suggest you put it in as a feature request.

    Jump to answer
Parents Reply Children
No Data