Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Safe Guard Easy 5.50.8 New Users and Decryption

Hi,

I am new to Safe Guard Easy 5.50.8 and have two questions where I haven't found a solution:

- New User -

How can I add a new user to the PBA after installin SGE to a PC/Notebook? Simply adding a user as a Windows User is not forwareded to the PBA. After several restarts the PBA does not know a new Windows user. Is there something in the preference managment I have to add? The manual does not show an information...

- Decryption -

I have installed SGE to a Test PC. Now I want to remove it and to reinstall it on a working Notebook. I have give permission to decrypt an internal Hard Disk with the preference managment tool. The context menu from Windows show me the "encryption" tab, but it is grayed out and can't be accessed.  The user on this stand alone PC has admin rights...

Any Idea what I have forgotten?

Thank you for help in advance.

btw.: is there anywhere a list where the planned changings to Version 5.60 are shown?

:11989


This thread was automatically locked due to age.
  • Hi Teco,

    thank you very much for posting. With regards to your questions:

    1. Adding new users is done via the owner of the machine. At POA level please disable the pass through to Windows > log on with the owner of the machine > boot will then stop at Windows Authentication level > now log on using the new user > after the next reboot he should be able to log on at POA level fine.

    This procedure is described in the manual and in an KBA as well. KBA can be found here: http://www.sophos.com/support/knowledgebase/article/107857.html

    2. In order to decrypt a client it is required that the user has the permissions the decrypt the drive (which you have applied correctly according to your description) and additionally you have to set the encryption status to "not encrypted" explicitly. This would mean that you create a new client config package that has a policy included that with encryption status not encrypted. Install the package on the client and then decryption will be available.

    However, in your case you can simply uninstall the product as this will automatically start a decryption as well.

    Regards

    Dan

    :13011