Users Guide

BitLocker Manager
The Local Management Console does not report status of a drive that is both Dell-encrypted and BitLocker-encrypted when
the drive is locked. [DDPC-6329]
SSL is no longer supported. TLS 1.0, 1.1, or 1.2 should be used rather than SSL.
New Features and Functionality v8.13
The Encryption client is now supported with the Windows 10 Creators Update (Redstone 2 release).
BitLocker Manager is now supported with Server 2016.
Added 5/2017 - Remote PBA management of local user accounts is now available.
Enterprise Edition is not supported with Windows Server 2008 (non-R2 version).
Secure Lifecycle is rebranded to Dell Data Guardian and is no longer included in Enterprise Edition. For more information
about Data Guardian, see http://www.dell.com/support/home/us/en/19/product-support/product/dell-data-guardian/
research.
Resolved Technical Advisories v8.13
Enterprise Edition for Windows
An issue is resolved that occasionally resulted in access denial errors for SDE-encrypted files stored in the \users folder.
[DDPC-3170]
An activation issue with Kaspersky Small Office Security installed is resolved after upgrade to the latest version of
Kaspersky. [DDPC-3388]
The Encryption Removal Agent Installation dialog now displays when uninstalling a Deferred Activation Encryption client.
[DDPC-3867, DDPC-4004]
All text now displays as expected in Japanese Encryption Removal Agent dialogs. Previously, some text did not display in one
dialog. [DDPC-4159]
VDI client activation error handling is improved. [DDPC-4474]
Log files are now collected when Diagnostic Info is run on a server OS. [DDPC-5206]
Changes to Common Encryption exclusions are now enforced while the user is logged in. [DDPC-5213]
Resolved Customer Issues
Setting the registry entry, EnableNGMetadata, resolves an issue that resulted in Microsoft update failure on computers with
Common key-encrypted data and performance issues related to encrypting, decrypting, or unzipping large numbers of files
within a folder.
Set the EnableNGMetadata registry entry in the following location:
[HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\CmgShieldFFE]
"EnableNGMetadata" = dword:1
0=Disabled (default)
1=Enabled
[DDPC-694, DDPC-794, DDPSUS-863]
An issue is resolved that resulted in access denial errors for non-domain users. [DDPC-854]
Decryption performance is improved when SDE Encryption is enabled. [DDPC-3577, DDPSUS-975]
The Local Management Console now indicates that an SD card is present in the Ports view as well as in the Device view with
External Media Edition and the Port Control policy, Port:SD, set to Bypassed. [DDPC-5037]
An issue is resolved that occasionally caused the Encryption client to become unresponsive with warnings in the log files.
[DDPC-5311]
42
Technical Advisories