Creating policy for TPM (Full Disk Encryption Policy Builder)

This section details the TPM-specific dialogs in the Full Disk Encryption Policy Builder.

  • Double-click the Policy Builder module in the Control Center as described in section 2.1 and click Full Disk Encryption Policy builder.
  • Choose to create an initialization or configuration policy.
  • The options dialog appears:
  • Check, which options you want to configure and configure each one until the TPM dialog appears:

The following options are available:

Option Description
Activate TPM protection Enable/disable TPM protection. Once the policy is deployed, the target computer must be restarted to enable the TPM.
Open key files for additional systems Open additional TPM key files so that the target drive may be installed on the computers from which the additional key files were obtained.
  • Complete the Full Disk Encryption Policy Builder wizard and deploy the policy.