Posted on 02-25-2010 07:57 AM
As some of you may know I have written about my experiences with the PGP 10 client here earlier. We are still having some issues, where every time a client logs into his / her system, they are prompted to re-enroll with PGP. This is regardless of the fact that they have enrolled already and encrypted for at least a week before this happened, or that the PGP universal server shows the device as fully encrypted. We have been chasing down different paths with PGP to resolve this problem. The latest thought was that it was the anti virus software that was causing the problem. PGP has stated that they have clients that have the same or similar issue and excluding certain PGP related files from the AV scan, or removing the anti virus software altogether resolved the issue. This has not been the case for us so far.
I wanted to update those of you I wrote to before, and also see if anyone else has had any issues like this with PGP or any issues at all with their software, or if you just want to share your thoughts on this.
Sean
Posted on 02-25-2010 08:06 AM
Sean,
Just sharing some thoughts from our project so it may not be Casper related
although we evaluated Casper Imaging which is unmatched.
We have tested Universal Server and that is a post imaging operation. The
advantage to this is that the decryption of the device can be centrally
managed. In the event that the user decryption passphrase is not available
the device can be decrypted or the password reset without their
intervention. The client is generated by the PGP Universal Server and their
is an enrollment process. An obstacle is addressing the large number of
devices already encrypted by PGP whole disk encryption that are unmanaged.
We are trying to get an answer from PGP if these clients can be managed by a
Universal Server.
Thanks
--
James Alcasíd | VeriSolv Technologies
Department of Veterans Affairs | Enterprise Infrastructure Engineering
470 L'Enfant Plaza SW Suite 3100, Washington DC 20024
Office (202) 245-4573, Mobile (202) 340-8930
Note:
This message is for the named person's use only. It may contain
confidential, proprietary or legally privileged information. No
confidentiality or privilege is waived or lost by any mis-transmission. If
you receive this message in error, immediately delete it and all copies of
it from your system, destroy any hard copies of it and notify the sender.
You must not, directly or indirectly, use, disclose, distribute, print, or
copy any part of this message if you are not the intended recipient. Any
views expressed in this message are those of the individual sender, except
where the message states otherwise and the sender is authorized to state
them to be the views of any such entity.
P Save Paper Do you really need to print this e-mail?
Posted on 02-25-2010 01:00 PM
Well looks like PGP has a work around for our issues. I say issues because what we have seen on two different client laptops presents itself the same way on each machine but is caused by two different problems. One involved placing the com.pgp.* preference files into the exclusions list of the AV, and the other had us removing the user from the PGP universal server, and then having the user re-enroll. This added them back into the Universal server and all appears to be fine with him now. Just figured I would update incase anyone wanted to know.
Sean