Putting it out to Jamf nation because the feedback is always spot on.
We have been looking at FV2 for a replacement to our current encryption.
Convincing aside to management and other "nay sayers", screen shots of the JSS and showing them the information they needed really sold it.
.... but there is always a prickly thorne. We can view, and poll our FV2 information. See the recovery code and admire it and use it, and go "look it works". Then along comes rules, legal requirements, etc. etc. etc.
So, in a nutshell, how do we preserve the machine name and recovery key forever.........
When someone leaves our enterprise we archive... Hard drive goes to a vault, and granted send the key with it seems to me like the easiest solution.......
But right now we use PGP, which keeps a nice nice database around well... pretty much forever.
If we use FV2, and reimage the box with a new hard drive for use, that over writes the JSS record and thus the FV2 record from the previous hard drive.
Export to CS? then use a routine to pull current information nightly to a database?
Checked into VB scripts, and other forms of translation to attempt to export this information directly in to AD and attach it to the bitlocker Tab in our ad record....
Just wondering if another else may have to deal with organization specifics for FV2 along these lines. And what was done to overcome it.
Appreciated and have a great weekend!