加入收藏 | 设为首页 | 会员中心 | 我要投稿 李大同 (https://www.lidatong.com.cn/)- 科技、建站、经验、云计算、5G、大数据,站长网!
当前位置: 首页 > 综合聚焦 > 服务器 > Windows > 正文

Windows XP全盘加密 – 有哪些选择?

发布时间:2020-12-13 23:59:49 所属栏目:Windows 来源:网络整理
导读:我一直被要求为我们的移动用户查看全盘加密软件.我们在域上运行 Windows XP SP3 PC,我的理解是我们不会升级到Vista并且目前没有计划升级到Windows 7.这似乎排除了Bitlocker.我们想看看两种不同类型的解决方案: Active Directory集成的解决方案,可以同步域帐
我一直被要求为我们的移动用户查看全盘加密软件.我们在域上运行 Windows XP SP3 PC,我的理解是我们不会升级到Vista并且目前没有计划升级到Windows 7.这似乎排除了Bitlocker.我们想看看两种不同类型的解决方案:

> Active Directory集成的解决方案,可以同步域帐户和密码,以便单点登录到PC.如果可以将解密/加密磁盘访问权限委派给帮助台上的非域管理员,则此解决方案应允许Domain Admins访问任何加密驱动器并获得奖励积分.
>单独或以某种工作组模式在每台PC上运行的解决方案,允许使用单个主密码来解密笔记本电脑的驱动器.对于最终用户单点登录,与域用户帐户和密码同步也很不错.

解决方案必须可靠(例如,当用户被迫在路上更改其域密码时,不会丢失密码同步.)这是一个小商店,因此易于管理很重要.

由于最近的安全漏洞,这些权力可能会排除TrueCrypt,但出于问题的目的,我想听听它是否满足这些要求. BitLocker也是如此 – 由于缺乏升级Windows的愿望,可能会排除它,但我对它在Vista / Windows 7上的工作感兴趣.

为什么,TrueCrypt!

Encrypts an entire partition or storage device such as USB flash drive or hard drive.

Using TrueCrypt Without Administrator Privileges

In Windows,a user who does not have administrator privileges can use TrueCrypt,but only after a system administrator installs TrueCrypt on the system. The reason for that is that TrueCrypt needs a device driver to provide transparent on-the-fly encryption/decryption,and users without administrator privileges cannot install/start device drivers in Windows.

After a system administrator installs TrueCrypt on the system,users without administrator privileges will be able to run TrueCrypt,mount/dismount any type of TrueCrypt volume,load/save data from/to it,and create file-hosted TrueCrypt volumes on the system. However,users without administrator privileges cannot encrypt/format partitions,cannot create NTFS volumes,cannot install/uninstall TrueCrypt,cannot change passwords/keyfiles for TrueCrypt partitions/devices,cannot backup/restore headers of TrueCrypt partitions/devices,and they cannot run TrueCrypt in portable mode.

.

07002,which means that anyone who wants to gain access and use the encrypted system,read and write files stored on the system drive,etc.,will need to enter the correct password each time before Windows boots (starts). Pre-boot authentication is handled by the TrueCrypt Boot Loader,which resides in the first track of the boot drive and on the TrueCrypt Rescue Disk.

域访问是在引导前登录之后.

但是,如果用户需要更改密码并且雇主希望知道该密码,则是雇主信任用户/雇员的问题.

(编辑:李大同)

【声明】本站内容均来自网络,其相关言论仅代表作者个人观点,不代表本站立场。若无意侵犯到您的权利,请及时与联系站长删除相关内容!

    推荐文章
      热点阅读