Users Guide

Enterprise Edition for Windows
Added 04/2016 - A computer running Windows 7 hibernates although the client is unable to encrypt the hibernation data and
the Prevent Unsecured Hibernation policy is enabled. [DDPC-1220]
The organization and naming of some policies differ in the local console and EE or VE Server Remote Management Console.
[DDPC-1253]
Added 8/2017 - When the user inserts EMS-encrypted media and clicks Access Encrypted Files on a Windows 10
computer without the Encryption client installed, the options Install EMS Service and Run EMS Explorer are not
available. [DDPC-1449]
On HCA-encrypted computers running the Windows 10 Fall Update, HCA decryption does not start after the HCA encryption
policy is changed to Off. [DDPC-1452]
On some USB drives, External Media Shield leaves some files unencrypted and renamed with "CEF????<original
filename>ERR." This occurs only occasionally, with USB drives or drivers that repeatedly disconnect and reconnect the
drives. To work around this issue, rename the files with their original filenames, then remove and reconnect the drive. If the
EMS Scan External Media policy is On, the resulting encryption sweep will process the files. [DDPC-1532]
If the HCA algorithm is changed after encryption, HCA encryption does not start. [DDPC-1533]
Advanced Authentication
On UEFI computers running the Windows 10 Fall Update and AVG Antivirus, Advanced Authentication installation with the
child installer is interrupted and never completes. [CSF-1192]
The fingerprint reader on the Latitude 7510 running Windows 10 loses functionality after upgrade to Windows 10 Fall Update.
To work around this issue, perform two restarts and the fingerprint reader will function again. [CSF-1210]
Changes to the Logon Authentication Policy on EE or VE Server take effect on the endpoint only after a restart. [CSF-1216]
Occasionally on computers running the Windows 10 Fall Update, fingerprints may need to be re-enrolled. [CSF-1225]
Preboot Authentication
After recovering PBA access through recovery questions, the password change page displays a message that, if no action is
taken, the user will be automatically logged in to the Windows session, although no automatic login occurs. [CSF-1083]
Added 04/2018- When a user tries to sync to the server while using a Latitude 7204 Rugged Machine on an XFR dock with
Windows 10 x32 and the Encryption client installed, the options
Sync and Network are not available at the PBA Log in screen. [DDPC-1638]
Added 4/2017 - Login or recovery fails when a German keyboard is used to enter special characters into the password or
recovery answer fields. [DDPC-5531]
Resolved Technical Advisories v8.7.1
Enterprise Edition for Windows
Client computers running Windows 10 are now correctly represented in DDP Server inventory as running Windows 10, rather
than Windows 8.1. [DDPC-908]
Silent uninstall now succeeds with decryption using a previously downloaded recovery key. [DDPC-941]
With both VMware Mirage and Webroot running on Windows 7, the computer now starts normally. [DDPC-958]
Access is now available to non-encrypted files that became inaccessible when encryption policy was changed or the file's
directory was moved. [DDPC-977]
An issue that led to occasional computer unresponsiveness when running Trend Micro and Office 365 is now resolved.
[DDPC-1125]
Performance is improved on computers running Trend Micro Behavior Monitoring and FireAMP. [DDPC-1216, DDPSUS-391]
Upgrade to Windows 10 now proceeds as expected, after decrypting and uninstalling Enterprise Edition. If previous upgrade
attempts have failed on a computer, delete the hidden temporary folder, %systemdrive%\$Windows.~BT, before attempting
upgrade. [DDPC-1237]
On Dell Latitude E7450 and Venue Pro 11 (7130), the issue of Access Denied errors preventing encryption of some Windows
folders is now resolved. [DDPSUS-521]
Technical Advisories
57