cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1260
Views
1
Helpful
4
Replies

ISE Disk Encryption Check

nmaio
Level 1
Level 1

Curious what is actually checked when a posture check verifies that a disk is actually encrypted?  What is the mechanism that verifies the encryption status?

1 Accepted Solution

Accepted Solutions

hslai
Cisco Employee
Cisco Employee

Disk encryption condition is its own category, separate from registry condition. Besides it also supports macOS.

Also see OPSWAT is Issued Patent for Determination of Whether a Data Storage is Encrypted

View solution in original post

4 Replies 4

hslai
Cisco Employee
Cisco Employee

Such checks are done via a library from a 3rd party, who working with various vendors. Not all disk encryption products (e.g. Dell Data Protection) are supported for the encryption state check.

Thanks hslai.  I assume you are referring to OPSWAT via the compliance module but I was interested in what is actually done to verify the encryption state.  Is a registry checked?  Is there a program state that is verified, etc? 

hslai
Cisco Employee
Cisco Employee

Disk encryption condition is its own category, separate from registry condition. Besides it also supports macOS.

Also see OPSWAT is Issued Patent for Determination of Whether a Data Storage is Encrypted

Thanks Hslai.  That link is what I was looking for.