Users Guide

Bitlocker Manager v10.0
No technical advisories exist.
New Features and Functionality v8.18
All clients are now supported with Windows 10 April 2018 Update (Redstone 4 release).
As the security landscape becomes more complex, administrators are finding themselves needing to layer encryption
solutions. Dell Data Security has modified how entitlements are consumed to meet this change in the landscape. Dual
Encryption is now offered through volume license as a solution to customers who want to encrypt data on Windows
computers using two Dell Encryption technologies. The following products can be installed and run with the Dell Encryption
client on the same computer:
SED Manager
Full Disk Encryption
BitLocker Manager
To install and run Dell Encryption with one of these products, the computer hardware and operating system must meet
the Requirements for both products before installation. For more information, see Encryption Enterprise Advanced
Installation Guide or Encryption Enterprise Basic Installation Guide.
Each Dell Encryption technology will now consume one Disk Encryption license per technology on a single device,
meaning if SED Manager and Policy Based Encryption are both installed on a single device to allow for two-layers of
security, two Disk Encryption (DE) entitlements will be consumed for that device.
The Dell Encryption client and Full Disk Encryption are supported only on Windows 10 in UEFI mode.
Operating system upgrade is not supported with Dual Encryption in this release. Dell recommends deferring Windows 10
Feature Updates.
When using any encryption technologies in combination, it is best practice to back up data before encryption and at
regular intervals.
NOTE: Dell does not currently support these combinations of encryption products:
SED Manager and Full Disk encryption
SED Manager and BitLocker Manager
Full Disk Encryption and BitLocker Manager
The Windows 10 update process and compatibility with Windows Defender are improved when System Data Encryption is
enabled . The encryption client can now identify and encrypt user files without the need to hardcode exclusion of system-
generated files when System Data Encryption is enabled. This behavior is configurable and can be overridden by the
administrator, if necessary. For more information on the Windows 10 Feature Update process, refer to http://www.dell.com/
support/article/us/en/04/sln298382.
The Encryption client can now identify and encrypt user files without the need to hardcode exclusion of system files.
SED Manager is now compatible with HVCI.
SED Manager has been qualified on the following non-Dell computers:
HP ProBook 450 G2 (Legacy)
HP ProBook 450 G5 (Legacy)
HP ProBook 840 G4 (Legacy)
HP Elitebook 840 G3 (Legacy)
HP Elitebook 840 G4 (UEFI)
Lenovo ThinkPad (Legacy)
Lenovo T560 (UEFI)
Full Disk Encryption is now supported with a FIPS-compliant crypto library on Windows 10.
Full Disk Encryption has been qualified on the following non-Dell computers:
HP ProBook 450 G2 (Legacy)
HP ProBook 450 G5 (Legacy)
HP ProBook 840 G4 (Legacy)
HP Elitebook 840 G3 (Legacy)
HP Elitebook 840 G4 (UEFI)
Lenovo ThinkPad (Legacy)
Technical Advisories
29