I've tended to think of these two things as equivalent, all FileVault users have Secure tokens, and all users with Secure tokens are FileVault users.
But now I've discovered that we a few dozen Macs where our both of these things are true:
- Our management account is a FileVault 2 User, and 2.Our management account does NOT have a Secure token.
(I use an extension attribute I found here to get a list of users with a Secure token: https://www.jamf.com/jamf-nation/third-party-products/files/990/users-with-secure-token)
I had thought those things were mutually exclusive.
What am I missing here?
Additional info: Some of those Macs are running 10.13.x, others 10.14.x. Most have boot or all partitions encrypted, but 2 have no partitions encrypted.
