Drive Encryption features provide full disk encryption for Microsoft Windows laptops and desktop PCs and prevent the loss of sensitive data, especially from lost or stolen equipment.
Centralized management — Drive Encryption integrates fully into ePO - On-prem, leveraging the ePO - On-prem infrastructure for automated security reporting, monitoring, deployment, and policy administration.
Transparent encryption — Drive Encryption enables transparent encryption without hindering users or system performance.
Access control — Drive Encryption enforces access control with re-boot authentication.
Recovery —The recovery feature allows the user to perform emergency recovery when the system fails to reboot or its Pre-Boot File System (PBFS) is corrupt.
Support for self-encrypting drives — Drive Encryption and ePO - On-prem enable centralized management of self-encrypting drives that conform to the Opal standard from Trusted Computing Group (TCG), including locking and unlocking, reporting, recovery, policy enforcement, and user management.
Trusted Platform Module (TPM) — Drive Encryption supports TPM 1.2 and later to provide platform authentication without the need for Pre-Boot Authentication (PBA).
Self-Protection in Trellix Drive Encryption — This feature prevents unauthorized modifications to Drive Encryption files and registry.