FileVault disk encryption for macOS Flashcards
(6 cards)
How many methods can you use to create and deploy FileVault disk encryption for macOS ?
2
* endpoint security policy for FileVault
* settings catalog policy for FileVault
What are the steps to configure an endpoint security policy for FileVault ?
- Endpoint security > Disk encryption > Create Policy
- Platform: macOS
- Profile: FileVault
-
Configuration settings page:
Set Enable FileVault to Yes.
For Recovery key type, only Personal Recovery Key is supported.
Configure other settings to meet your requirements - Scope
- Assignments
What are the steps to configure a settings catalog policy for FileVault ?
- Devices > By platform > macOS > Manage devices > Configuration > Create > New policy
- Create a profile page, select Settings catalog for the Profile type
- Name + Description
-
Configuration settings page: select + Add settings
FileVault settings are located under the Full Disk Encryption category - FileVault > Configure the following:
Enable - Set to On
Defer - Set to Enabled
FileVault Recovery Key Escrow > Location - Specify a description of the location where the recovery key is escrowed. This text is inserted into the message the user sees when enabling FileVault. - Scope
- Assignments
4
Where can end users retrieve their personal recovery key for FileVault on a macOS device?
From the following locations:
* Company Portal website
* iOS/iPadOS Company Portal app
* Android Company Portal app
* Intune app
What steps should users follow on the Company Portal website to get their recovery key?
Select Devices > the encrypted and enrolled macOS device > Get recovery key.
True or False: Users can retrieve their FileVault recovery key using any device.
True