How to Increase Logging in Dell Encryption Enterprise and Dell Encryption Personal

Summary: This article provides information to increase logging in Dell Encryption Enterprise (formerly Dell Data Protection | Enterprise Edition) and Dell Encryption Personal (formerly Dell Data Protection | Personal Edition). ...

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

Affected Products:

  • Dell Data Protection | Enterprise Edition
  • Dell Encryption Enterprise
  • Dell Data Protection | Personal Edition
  • Dell Encryption Personal
  • Dell Encryption Enterprise BitLocker Manager
  • Dell Endpoint Security Suite Pro
  • Dell Encryption Enterprise Self-Encrypted Drive Manager
  • Dell Encryption Enterprise Full Disk Encryption
  • Dell Encryption Enterprise

Cause

Not Applicable

Resolution

Warning: The next step is a Windows Registry edit:

Dell Encryption Enterprise or Dell Encryption Personal contains various entries to increase logging for the various modules they contain. These settings are only available within the registry.

  • All Entries fall under:
    • HKEY_LOCAL_MACHINE\SOFTWARE\Credant\EMS
  • Increase verbosity with this DWORD:
    • FileLogVerbosity
    • The default value is 1, Max is 4.
  • Increase logging for Debug output with this DWORD:
    • DebugLogVerbosity
    • Acceptable values are 1 for low logging and 4 for maximum logging.
  • Enable Debug logging for Systray Icon issues with this DWORD:
    • ShowNotifyIconDiags
    • Default is nonexistent. Enable by creating the key and setting the value to 1.
  • Enable the Policy viewer menu with this DWORD:
    • ShowEmsExplorerPolicyMenu
    • The default is that this does not exist. Enable by creating the key and setting the value to 1.
    • Enabling this allows users to view the applied policy if only Dell Encryption External Media (formally Dell Data Protection | External Media Edition) is installed.
  • Enable or Disable the ability to roll over log files with this DWORD:
    • FileLogFlushing
    • The default is that this does not exist. Enable by creating the key and setting the value to 1.
    • This entry causes the log files to override previous log files instead of stacking.

  • All Entries fall under:
    • HKEY_LOCAL_MACHINE\SOFTWARE\Credant\PCS
  • Increase verbosity with this DWORD:
    • FileLogVerbosity
    • The default value is 1, Max is 4.
  • Increase logging for Debug output with this DWORD:
    • DebugLogVerbosity
    • The default value is nonexistent. Acceptable values are 1 for low logging and 4 for maximum logging.

  • Entries fall under various locations for various services;
    • Main Shield logging is located under:
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\CMGShield
  • To increase logging, modify the value in this DWORD:
    • LogVerbosity
    • The default value is 0x00000007, increase to 0x0000000f for full debug logging.
  • To increase the number of log files that can be generated, modify the value in this DWORD:
    • RollOvers
    • The default value is 5, increase to any number to allow for the number of log files that the CMGShield creates in:
      C:\ProgramData\Dell\Dell Data Protection\Encryption\

  • All Entries fall under:
    • HKEY_LOCAL_MACHINE\SOFTWARE\CREDANT\LMC
  • To increase logging, modify the value in this DWORD:
    • LogVerbosity
    • The default value is 0x00000007, increase to 0x0000000f for full debug logging.

  • All Entries fall under:
    • HKEY_LOCAL_MACHINE\SOFTWARE\CREDANT\IPC
  • To increase logging, modify the value in this DWORD:
    • LogVerbosity
    • The default value is 0x00000007, increase to 0x0000000f for full debug logging.

  • All Entries fall under:
    • HKEY_LOCAL_MACHINE\SOFTWARE\CREDANT\SysTray
  • To increase logging, modify the value in this DWORD:
    • LogVerbosity
    • The default value is 0x00000007, increase to 0x0000000f for full debug logging.

The Dell Encryption Management Agent helps manage and distribute policies to various plugins provided to it. This includes Endpoint Security Suite Enterprise (including Client Firewall and Web Protection), BitLocker Manager, Self-Encrypting Driver Management, and Dell’s software based Full Disk Encryption solution. The Encryption Management Agent leverages various entries to increase logging for the plugins managed on an endpoint. These settings are only available within the registry.

  • All Entries fall under:
    • HKLM\Software\Dell\Dell Data Protection\
  • To increase logging, create or modify the value within this DWORD:
    • LogVerbosity
      • This Value defaults to "10" (in decimal, with no quotes), the maximum (or debug level) value would be "15" (in decimal, with no quotes).

To contact support, reference Dell Data Security International Support Phone Numbers.
Go to TechDirect to generate a technical support request online.
For additional insights and resources, join the Dell Security Community Forum.

Affected Products

Dell Encryption
Article Properties
Article Number: 000129453
Article Type: Solution
Last Modified: 07 Sep 2023
Version:  8
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.