Configuring the Write Action

The Write action lets users:

  • Create new files

  • Copy or move files to devices

  • Delete files from devices

  • Change file contents on devices

  • Change file names on devices

The default predefined write actions are:

  • Data Type - Encrypt business-related data on storage devices - All Files that are defined as business-related data must be written to the encrypted storage. Non-business related data can be saved to the device without encryption. See Configure business and non-business related file types.

  • Allow writing data on storage devices:

    • Allow encryption - Users can write only encrypted files to storage devices.

    • Enable deletion of file on read-only media - Allow users to delete files on devices with read-only permissions.

You can configure these settings for specific devices.

Configure the Write action

  1. In the Media Encryption tab, click View Exclusions.

  2. Click New to create a new exclusion or configure an existing exclusion on the list.

  3. Per each device, configure the options as necessary for: Data Type and Write Encrypted:

    • Data Type - Select one of these options:

      • Allow any data - Users can write all file types to storage devices.

      • Encrypt business-related data - Users must encrypt all business-related files written to storage devices. Other files can be written without encryption. See Configuring Business-Related File Types.

      • Encrypt all data - Users must encrypt all files written to storage devices.

      • Block any data - Users cannot write any files to storage devices.

    • Write Encrypted - Select one of these options:

      • Accept - Users must encrypt files written to storage devices.

      • According to Policy - According to the default Media Encryption & Port Protection rule.

      • Block - Block all writing to storage devices.

Note:
  • If no read policy is allows, the write policy is disabled automatically.

  • If Block any Data is selected, Allow encryption and Configure File Types are disabled.

Import exclusions

You can import an exported exclusion file in the JSON format.

  1. In the Media Encryption tab, click View Exclusions.

  2. Click Import and select the JSON file.

Export exclusions

  1. In the Media Encryption tab, click View Exclusions.

  2. Select the exclusion from the list.

  3. Click Export.