To comply with Common Criteria regulations, you must apply these policy settings in the Policy Catalog page before installing Drive Encryption.
For each user-based policy that is assigned to one or more Drive Encryption clients, make sure that you enable the Invalidate password after invalid attempts option under User-Based Policy | Password | Incorrect passwords. Also make sure that the
nnvariable is greater than or equal to 10.For product settings that are assigned to one or more Drive Encryption clients, make sure that:
On the General tab, the Enable policy checkbox is selected.
On the Encryption tab, the Encrypt field is set to All disks.
On the Logon and General tabs, the Enable automatic booting option is disabled.