We currently block all write access on external drives for our users via a Configuration Profile pushed via JSS. We have a need to allow the ability to write to Ironkey encrypted drives without allowing write access to unencrypted drives. On the PC side of the house we're using McAfee ePO to allow write access to only drives that have a specific hardware ID (Ironkeys). Is there a way to achieve similar functionality to the Macs? Currently I've had to remove a Mac from the scope of the USB read-only Config Profile for the duration that the user needs to copy files to an Ironkey drive. I also have to trust that the user will let me know that they are done AND that they didn't copy any files to unencrypted drives during that time.
Reply
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.