Configure the Write action

  1. In the Media Encryption tab, click View Exclusions.
  2. Click New to create a new exclusion or configure an existing exclusion on the list.
  3. Per each device, configure the options as necessary for: Data Type and Write Encrypted:
    • Data Type - Select one of these options:

      • Allow any data - Users can write all file types to storage devices.

      • Encrypt business-related data - Users must encrypt all business-related files written to storage devices. Other files can be written without encryption. See Configuring Business-Related File Types.

      • Encrypt all data - Users must encrypt all files written to storage devices.

      • Block any data - Users cannot write any files to storage devices.

    • Write Encrypted - Select one of these options:

      • Accept - Users must encrypt files written to storage devices.

      • According to Policy - According to the default Media Encryption & Port Protection rule.

      • Block - Block all writing to storage devices.

Note:
../../Images/Notes/Note.png

Notes:

  • If no read policy is allows, the write policy is disabled automatically.

  • If Block any Data is selected, Allow encryption and Configure File Types are disabled.