Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Remote install Full Disk Encryption

I'm planning a rollout of Sophos Full Disk Encryption to a mobile database.  From the management console can I push out the installation to the client machines?  They are all joined to a Windows domain.  Many connect over a VPN connection to access domain resources.  It's impractical to have all the users travel back to the office in order to have a tech perform the installation. 

This Sophos newbie apologizes if this question has been answered previously.  I wasn't able to find the question when I searched the KB.

Thanks,

m-

Edit: We will be installing SafeGuard Enterprise in order to take advantage of the management server.  Initially, only the FDE will be deployed.

:51788


This thread was automatically locked due to age.
Parents
  • You can definetly perform the installation using any remote support tool you wish. Just remember that the first person to log in after the MSI files have been installed will be tied to that device as its owner.

    Even though the accounts are tied the POA is seperate to the Windows log in screen and so users will need to be manually added to the encryption in order to log onto the device. The first person to log on after Sophos Safeguard has been installed will be automaticly added to the POA - however subsiquent users will need to be added by a user that has already been added to the POA.

    (This process is straight forward enough; the user enters their log in credentials and unticks "Pass through log-on to Windows".)

    if you are installing the software remotely you will need to make sure a nominated individual is availible at the other end who would be happy to add the other users to the encryption.

    :51854
Reply
  • You can definetly perform the installation using any remote support tool you wish. Just remember that the first person to log in after the MSI files have been installed will be tied to that device as its owner.

    Even though the accounts are tied the POA is seperate to the Windows log in screen and so users will need to be manually added to the encryption in order to log onto the device. The first person to log on after Sophos Safeguard has been installed will be automaticly added to the POA - however subsiquent users will need to be added by a user that has already been added to the POA.

    (This process is straight forward enough; the user enters their log in credentials and unticks "Pass through log-on to Windows".)

    if you are installing the software remotely you will need to make sure a nominated individual is availible at the other end who would be happy to add the other users to the encryption.

    :51854
Children
No Data