- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Device Encryption
I do not have the application yet, but looking into it. Does this allow you to encrypt the hard drive? Some AV apps have this option , but do not support apple devices. (iMacs, Macbook, etc...) If so does this allow the user to set the pw and give admin access to reset it if they forget the password? Since this is cloud based does it work from anywhere without configuring anything in the firewall?
Solved! Go to solution.
- Labels:
-
Apps
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Mel Meraki is great for security because you can track compliance of devices. You can enforce passcode policies and lock down the hard drive with configuration profiles.
You can clear iOS device passwords, but you cannot on Mac. But you can push down a pkg that creates a local admin account on the computer and that would always allow you to reset any users password if necessary (assuming you have the device on hand).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Mel Meraki is great for security because you can track compliance of devices. You can enforce passcode policies and lock down the hard drive with configuration profiles.
You can clear iOS device passwords, but you cannot on Mac. But you can push down a pkg that creates a local admin account on the computer and that would always allow you to reset any users password if necessary (assuming you have the device on hand).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@jared_f thank you. Do you know if they are trying to figure out how to encrypt the mac hard drive? So far I have not been able to find any solution to remotely encrypt mac hardware.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Check this out @Mel:
https://documentation.meraki.com/SM/Profiles_and_Settings/Using_File_Vault_2
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes, once you push this out and your user enrolls they will be forced to use FileVault.
The only way they could get out of it is removing the MDM profile, but that is a whole other discussion.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I think we type faster than we receive each others responses...Thanks this helps alot. Do you think meraki will ever create or develop a home/consumer use products? I like their access points and some other features, but they are pricey for home use by device and license.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Mel Unfortunately, no I do not think they will offer a home suite. We ran into the same issue - it would have cost us hundreds just in device licensing for Meraki hardware. While I would love to have it, that is obsessive for my home network. I installed a Netgear System last year, but we were not happy with it, I ended up switching to Ubiquiti and just finished the install of all our new hardware and access points yesterday.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I think this patch might fix it @jared_f.
https://help.ubuntu.com/community/How%20to%20install%20Ubuntu%20on%20MacBook%20using%20USB%20Stick
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I wish we could just change their OS.
Can meraki take over FIleVault to force the encryption rather than producing their own management?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Mel So, once everything is setup your user will install the Meraki MDM Profile (I also recommend the agent be deployed and the admin PKG when this is all being done). Once the user installs the profile, you can scope out the FileVault configuration profile. This will encrypt the hard drive. The "key" will be stored under your Meraki server and the user will have to do nothing on their end once the profile is deployed.
