Skip to main content
Matrix42 Self-Service Help Center

Creating a de-initialization policy

Creating a de-initialization policy

This section details how to create a de-initialization policy for the PBA component only.

You need to have knowledge about the target computer for deployment. Details such as number of partitions, drive letters, is it already encrypted etc… are necessary for the successful deployment of Matrix42 Full Disk Encryption. Once the policy is created, deploy it, for details see Deploying PBA policies.

Follow the step below to create a new policy in PBA Policy Builder:

  • Open the Control Center.
  • Double-click the Policy Builder icon.
  • Select Pre-Boot Authentication policy builder.

clipboard_e6eba34b1a633f089c86aa00b7abcc448.png

  • The PBA Policy Builder Welcome dialog appears.
  • Click Next to continue.

clipboard_e5dd97cd8d417ee9a562146dea983ab9b.png

  • The Policy selection dialog appears.
  • Select the Create a new policy radio button.
  • Click Next to continue.

clipboard_e5a26ac32ea253d830d59aa8a446a6aa5.png

  • The Policy type dialog appears.
  • Select Create a deinitialization policy. Click Next to continue.

clipboard_e09ed0dcbaf8e3b88beec36834f1302cc.png

  • The Deinitialization Options dialog appears.

clipboard_eb0d3ce17b092c397d6fb0d3ff26140f7.png

This dialog allows you to define the following options:

Option Details

Deinitialize Pre-Boot Authentication

Deactivate Matrix42 Full Disk Encryption PBA only. Matrix42 Full Disk Encryption can be re-activated remotely via a second policy, or manually via the Control Center.

Remove Pre-Boot Authentication

Remove Matrix42 Full Disk Encryption PBA completely.

  • Once you have made your selection click Next.

Message options

  • The Message options dialog appears.

clipboard_e096ae5e3ee7cfc6d6989c219cb9f75dc.png

The messages below are shown only on computers with Windows versions below Windows 10.

Option This option determines whether...

Show status dialogs

 

… status dialogs should be displayed on the target computer during policy deployment.

Show warning messages

 

… warning messages should be displayed on the target computer during policy deployment. If you do not select this option, warning messages are suppressed.

Show error messages

 

… error messages should be displayed on the target computer during policy deployment. If you do not select this option, error messages are suppressed

Show success messages

 

… success messages should be displayed on the target computer that relate to individual policy tasks during deployment.

Show other messages

 

… information messages should be displayed on the target computer during and after policy deployment. If you do not select this option, information messages are suppressed.

  • Make your selection and click Next to continue

Administration Password

  • The Administration password (target computer) dialog appears:

clipboard_e33e2d44b8fcd0b5fd3d39d20884bdcf9.png

  • Enter and confirm the Matrix42 Full Disk Encryption administration password, which you already set on the target computer.
  • Click Next to continue.

Policy Location

  • The Policy Location dialog appears.

clipboard_ecd9f89468fe15c1ad0930898a5569dd2.png

The following options are available:

Option Details

Policy file Path

 

Enter the path for the policy in this field by clicking ‘…’ and selecting a location and filename for the file in the file browser.

Create an unencrypted copy of the policy

 

Check this option to create an unencrypted copy of the policy (recommended for reconfiguration).

If you want to reconfigure a computer that has already been configured using a policy, then check this option - the Policy Builder can only open an unencrypted policy to edit the settings.

Plain copy of policy

 

Enter the path for the plain copy of the policy in this field by clicking ‘…’ and selecting a location and filename for the file in the file browser.

  • Enter the paths for your policy and click Finish to complete the procedure.
  • Was this article helpful?