The user-based policy settings are organized into these tabs: Authentication, Password, Password Content Rules, Self-Recovery, and Companion Devices.
Option | Definition |
|---|---|
Token type | The authentication token type, for example, password or smartcard. |
Certificate rule | Drive Encryption enhances the use of PKI and tokens to allow users to authenticate using their certificates. You can use certificate rules to quickly make your Drive Encryption enterprise aware of all certificate-holding users, and allow them to be allocated to PCs using Drive Encryption without having to create new smart cards or other forms of token for their use.
|
Logon Hours | The days and the hours when the user can log on to the client system. The restrictions are applied using the Apply Restrictions option. |
Option | Definition |
|---|---|
Default password | Change default password — For new installations or duplicates of the Trellix default installation, the default password is 1234567. There is a minimum character length of 7 characters for the default password. If you are upgrading, the password remains unchanged. If the administrator changes the default password, the new password becomes the default password for this policy under the User Based Policy category.
|
Password change |
|
Incorrect passwords |
|
Allow showing of password | Enable this option to display the password of the user while entering it. |
Option | Definition |
|---|---|
Display list of password rules | Enable this option to display the password requirements to users. |
Password length | The number of characters in a user password.
|
Enforce password content | The number of different characters like alpha, numeric, alphanumeric, and symbols that are required to form a password.
|
Password content restrictions | The password content restrictions for the user password.
|
Option | Definition |
|---|---|
Enable self-recovery | Enables self-recovery for users assigned to the system. |
Invalidate self-recovery after no. of invalid attempts | The number of attempts after which self-recovery is disabled. |
Questions to be answered | The number of questions to be answered by the user to perform the self-recovery. This lists the default questions for the selected language, also provides an option to add more questions. NoteIf a language does not have enough questions or includes an error, the language appears in red. |
Logons before forcing user to set answers | The number of logons before forcing the user to set answers. |
Questions | Allows you to select a language, set the question, and set the minimum answer length. This lists the default questions for the selected language, and provides an option to add more questions. NoteIf a language does not have enough questions or includes an error, the language appears in red. |
Option | Definition |
|---|---|
Recovery | Enable this option to allow the user to perform system recovery through smartphone. NoteThe Companion Device application is now known as Trellix Endpoint Assistant. |
Password Definition | Enable this option to create a password according to the option selected. NoteIf the user has once set a higher password definition to the system, the user cannot change the password to a lower password definition (that is less secure) even if that policy is set in Trellix ePO - On-prem. |