How Dell Encryption Encrypts Cached Credentials

概要: How Cached Credentials are encrypted in Dell Encryption (formerly Dell Data Protection Encryption).

この記事は次に適用されます: この記事は次には適用されません: この記事は、特定の製品に関連付けられていません。 すべての製品パージョンがこの記事に記載されているわけではありません。

現象

Affected Products:

  • Dell Security Management Server
  • Dell Data Protection | Enterprise Edition
  • Dell Security Management Server Virtual
  • Dell Data Protection | Virtual Edition
  • Dell Encryption Enterprise External Media
  • Dell Data Protection | External Media Edition
  • Dell Endpoint Security Suite

Affected Versions:

  • v8.0.0 and Later

Cached credentials are encrypted in Shield versions 8.x.x and later. The General Purpose Key (GPK) is generated on the Shield and escrowed to an 8.x.x or later Dell Security Management Server (formerly Dell Data Protection | Enterprise Edition Server) or Dell Security Management Server Virtual (formerly Dell Data Protection | Virtual Edition).

原因

Not Applicable

解決方法

Encryption of Cached Credentials

The TPM is used for encryption given these conditions:

  • TPM drivers must be installed.
  • The Shield must be able to take ownership of the TPM.
  • The computer must be Dell-branded.

Managed Shields must be activated against a Dell Security Management Server or Virtual Server v8.x or later for both TPM and DPAPI. Otherwise, cached credential encryption is not used, and the Shield uses system DPAPI, which is available on all operating system platforms. The only way that the TPM or DPAPI is not used if the Dell Security Management Server version is earlier than 8.x (Dell Security Management Server Virtual was not available before this timeframe).


To contact support, reference Dell Data Security International Support Phone Numbers.
Go to TechDirect to generate a technical support request online.
For additional insights and resources, join the Dell Security Community Forum.

対象製品

Dell Encryption
文書のプロパティ
文書番号: 000126123
文書の種類: Solution
最終更新: 14 11月 2023
バージョン:  7
質問に対する他のDellユーザーからの回答を見つける
サポート サービス
お使いのデバイスがサポート サービスの対象かどうかを確認してください。