For the Drive Encryption client to operate in FIPS mode, install the Drive Encryption client package in FIPS mode before activating Drive Encryption on the client.
If Drive Encryption is already installed on systems without enabling the FIPS mode, perform these tasks to make it operate in the FIPS mode.
Decrypt the client systems.
Deactivate Drive Encryption on the client systems.
Remove the Drive Encryption product from the client systems.
Reinstall Drive Encryption in the FIPS mode.
When installing Drive Encryption client package in FIPS mode using a Trellix ePO deployment task, make sure to add the keyword FIPS on the command line of the Drive Encryption deployment task in Trellix ePO. For more information on installation steps, see Deploy Drive Encryption to the client system.
To deploy Drive Encryption via a 3rd-party tool, see KB79786 . To enable additional logging during install, see KB86190.