How to Force a Crash Dump on a Computer Running Dell Encryption
Summary: How to Force a crash dump on a computer running Dell Encryption (formerly Dell Data Protection | Encryption).
Symptoms
Affected Products:
- Dell Encryption
- Dell Data Protection | Encryption
Cause
Not Applicable
Resolution
To configure the machine for a manual crash dump, modify the registry with the following settings:
Be sure to reboot the machine after adding these registry settings for them to take effect. I would add these to the machine while it is encrypting and then restart. During startup, wait until the computer stops responding and let it sit for a few minutes. It is imperative that the crash dump is captured when it stops responding.
Next manually cause the computer to fail by holding the right Ctrl key and press ScrollLock twice to initiate the crash dump. Restart the machine in an alternate operating system and collect the memory dump. Then compress the file in a ZIP file and upload it for analysis.
To create a crash dump, change the registry settings below:
- Backup the Registry before proceeding, reference How to Back Up and Restore the Registry in Windows
.
- Editing the Registry can cause the computer to become unresponsive on the next reboot.
- Contact Dell Data Security International Support Phone Numbers for assistance if you have concerns about performing this step.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\i8042prt\Parameters] "CrashOnCtrlScroll"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\kbdhid\Parameters] "CrashOnCtrlScroll"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Debug Print Filter] "DEFAULT"=dword:0000000f [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\CrashControl] "AutoReboot"=dword:00000001 "CrashDumpEnabled"=dword:00000001 "Overwrite"=dword:00000001 "LogEvent"=dword:00000001 "DumpFile"=hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,\ 74,00,25,00,5c,00,4d,00,45,00,4d,00,4f,00,52,00,59,00,2e,00,44,00,4d,00,50,\ 00,00,00 "DumpFilters"=hex(7):64,00,75,00,6d,00,70,00,66,00,76,00,65,00,2e,00,73,00,79,\ 00,73,00,00,00,00,00
For Verbose logging when creating the crash, use the registry settings below:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\CMGShield] "LogVerbosity"=dword:0000000f "DebugServerPipe"=dword:00000001 "DebugClientPipe"=dword:00000001 "RollOvers"=dword:00000010 [HKEY_LOCAL_MACHINE\SOFTWARE\CREDANT\LMC] "LogVerbosity"=dword:0000000f [HKEY_LOCAL_MACHINE\SOFTWARE\CREDANT\IPC] "LogVerbosity"=dword:0000000f [HKEY_LOCAL_MACHINE\SOFTWARE\Credant\EMS] "FileLogVerbosity"=dword:00000004 "DebugLogVerbosity"=dword:00000004 "FileLogFlushing"=dword:00000001 [HKEY_LOCAL_MACHINE\SOFTWARE\CREDANT\SysTray] "LogVerbosity"=dword:0000000f [HKEY_LOCAL_MACHINE\SOFTWARE\Dell\Dell Data Protection] "LogVerbosity"=dword:0000000f
To contact support, reference Dell Data Security International Support Phone Numbers.
Go to TechDirect to generate a technical support request online.
For additional insights and resources, join the Dell Security Community Forum.