Using the Add local domain users option, you can activate Drive Encryption on the client systems without manually adding users in ePolicy Orchestrator.
This option provides automatic user assignment, eliminating the need for administrators to manually assign users to client systems in the ePO - On-prem console. The recommended best practice is to manually assign at least one user to all systems to ensure successful Drive Encryption activation even if the Add local domain user option fails to function as configured. However, if this option is configured correctly, it will not fail. A general recommendation is to manually add a group of support users to all systems, then activate Drive Encryption using the Add local domain users option. You can remove these users at a later stage after completing the deployment.
For details about product features, usage, and best practices, click ? or Help.
Configure the Product Settings Policy with the Add local domain users option enabled.
Log on to the client system. After the agent to server communication interval, the Add local domain users feature adds the previously/currently logged on domain users to the client system.
Drive Encryption is activated in the client system during the next ASCI. You can now restart the client to log on using the PBA page.