HP dx2030 manual Embedded Security for HP ProtectTools

Page 59

8Embedded Security for HP ProtectTools

NOTE: The integrated Trusted Platform Module (TPM) embedded security chip must be installed in your computer to use Embedded Security for HP ProtectTools. Most HP commercial desktop computers include the Infineon TPM, which is the only common criteria certified chip to meet TCG specifications.

Embedded Security for HP ProtectTools protects against unauthorized access to user data or credentials. This software module provides the following security features:

Enhanced Microsoft Encryption File System (EFS) file and folder encryption (EFS is not available on Windows Home versions)

Creation of a personal secure drive (PSD) for protecting user data

Data management functions, such as backing up and restoring the key hierarchy

Support for third-party applications (such as Microsoft Outlook and Internet Explorer) for protected digital certificate operations when using the Embedded Security software

The TPM embedded security chip enhances and enables other HP ProtectTools Security Manager security features. For example, Drive Encryption for HP ProtectTools can use the embedded chip as an authentication factor when the user logs on to Windows.

Setup procedures

CAUTION: To reduce security risk, it is highly recommended that your IT administrator immediately initialize the embedded security chip. Failure to initialize the embedded security chip could result in an unauthorized user, a computer worm, or a virus taking ownership of the computer and gaining control over the owner tasks, such as handling the emergency recovery archive, and configuring user access settings.

Follow the steps in the following 2 sections to enable and initialize the embedded security chip.

Installing Embedded Security for HP ProtectTools (if necessary)

To install Embedded Security for HP ProtectTools:

1.Click Start, click All Programs, and click Install Embedded Security for HP ProtectTools.

2.Accept the UAC warning.

3.Click Next, then enter User Name & Organization name if appropriate.

4.Click Next, click Install, and click Finish when complete.

5.Select Yes or No for the reboot request.

Enabling the embedded security chip in Computer Setup

The embedded security chip can be enabled in the Quick Initialization Wizard or in the Computer Setup utility as described below.

ENWW

Setup procedures 49

Image 59
Contents HP ProtectTools Security Software, Version HP ProtectTools Security Software User Guide About This Book Iv About This Book Table of contents HP ProtectTools Security Manager Vii Embedded Security for HP ProtectTools Computrace for HP ProtectTools Glossary Index Enww Introduction to security Function FeaturesModule Key features HP ProtectTools featuresCredential Manager Password Manager for HP ProtectTools Drive Encryption for HP ProtectTools Embedded Security for HP ProtectToolsPrivacy Manager for HP ProtectTools Device Access Manager for HP ProtectToolsFile Sanitizer for HP ProtectTools Computrace for HP ProtectTools formerly known as LoJack Pro Accessing HP ProtectTools SecurityAchieving key security objectives Protecting against targeted theft Restricting access to sensitive dataPassword Manager for HP ProtectTools on Creating strong password policiesAssigning security roles Managing HP ProtectTools passwordsAdditional security elements Bios Creating a secure passwordBacking up credentials and settings Using the Administrative Console HP ProtectTools Security Manager Administrative ConsoleAbout HP ProtectTools Administrative Console Configuring your system Getting Started Setup WizardSession tab Enabling security featuresDefining Security Manager authentication policies Logon tabAdding a user Defining SettingsManaging Users Checking user status Configuring Applications SettingsSpecifying device settings Removing a userEncrypting Drives Managing Device AccessHP ProtectTools Security Manager Logging in after Security Manager is configuredSetting up a Smart Card Managing passwordsSetting credentials Changing your Windows passwordRegistering the Smart Card Enable security features window, click NextManaging communication privacy Initializing the Smart CardViewing drive encryption status Viewing device accessActivating theft recovery Shredding or bleaching filesBacking up your data Setting preferencesBackup and Restore Adding applicationsRestoring your data Click Restore dataChanging your Windows user name and picture Password Manager for HP ProtectTools Editing logons Adding logonsOrganizing logons into categories Using the Logons menuTo manage your logons Assessing your password strengthPassword Manager Icon settings Managing your logonsDrive Encryption for HP ProtectTools Advanced tasks Setup proceduresGeneral tasks Click the Change Encryption button Backup and recovery administrator taskCreating backup keys Encrypting or decrypting individual drivesManaging Privacy Manager Certificates Requesting and installing a Privacy Manager CertificatePrivacy Manager for HP ProtectTools Opening Privacy ManagerClick the Request a Privacy Manager certificate button Installing a Privacy Manager CertificateViewing Privacy Manager Certificate details Requesting a Privacy Manager CertificateRestoring a Privacy Manager Certificate Setting a default Privacy Manager CertificateRenewing a Privacy Manager Certificate Deleting a Privacy Manager CertificateClick Advanced Revoking your Privacy Manager CertificateManaging Trusted Contacts Adding Trusted ContactsAdding a Trusted Contact Checking revocation status for a Trusted Contact Using Privacy Manager in Microsoft OfficeViewing Trusted Contact details Deleting a Trusted ContactSigning a Microsoft Office document Configuring Privacy Manager in a Microsoft Office documentEncrypting a Microsoft Office document Adding a suggested signers signature lineViewing an encrypted Microsoft Office document Removing the encryption from a Microsoft Office documentSending an encrypted Microsoft Office document Viewing a signed Microsoft Office documentSealing and sending an e-mail message Using Privacy Manager in Microsoft OutlookConfiguring Privacy Manager for Microsoft Outlook Signing and sending an e-mail messageClick Import migration file Exporting Privacy Manager Certificates and Trusted ContactsImporting Privacy Manager Certificates and Trusted Contacts Click Export migration fileAbout free space bleaching File Sanitizer for HP ProtectToolsOpening File Sanitizer About shreddingSelecting a predefined shred profile Setting a free space bleaching scheduleSetting a shred schedule Selecting or creating a shred profileCustomizing a simple delete profile Customizing an advanced security shred profile Using the File Sanitizer icon Using a key sequence to initiate shreddingClick Bleach Now Manually shredding one assetManually shredding all selected items Manually activating free space bleachingViewing the log files Aborting a shred or free space bleaching operationEmbedded Security for HP ProtectTools Enabling the embedded security chip in Computer SetupInitializing the embedded security chip Setting up the basic user accountSelect Embedded security device state and change to Enable Sending and receiving encrypted e-mail Using the Personal Secure DriveEncrypting files and folders Migrating keys with the Migration Wizard Changing the owner passwordResetting a user password Backing up and restoringSimple configuration Device Access Manager for HP ProtectToolsStarting background service Adding a user or a group Device class configuration advancedJust In Time Authentication Jita Configuration Denying or allowing access to a user or groupCreating an extendable Jita for a user or group Creating a Jita for a user or groupDisabling a Jita for a user or group Advanced SettingsGo to https//cc.absolute.com Computrace for HP ProtectToolsGlossary Reboot Drive Encryption key recovery serviceEmergency recovery archive Power-on authenticationSend Security button Revocation passwordSeal for trusted contacts Security logon methodTrusted sender Windows administratorTrusted message Trusted Platform Module TPM embedded security chipIndex Password Restricting
Related manuals
Manual 8 pages 21.3 Kb