Re: WG bans

Published by kupjones on

#111183
kupjones
Member
5 hours ago, StringBuilder said:

Windows encryption is NOT BitLocker and is not connected to it in any way. Windows encryption is available in Professional+ versions of Windows, while BitLocker is available only in Ultimate/Enterprise. Windows encryption can encrypt only selected files/folders, while BitLocker encrypts entire volume.

You control Windows encryption in properties of file/folder, BitLocker from Control Panel.

Quite true, as the one you mention is EFS as an extension to NTFS.  I assumed you were referring to Bitlocker (aka – Full drive encryption) when you originally mentioned “…. when your HDD is stolen.”  BitLocker is the preferred tech to employ whenever one is worried about having a drive stolen, like when the VA had that laptop stolen.  BitLocker wants (but doesnt need) a TPM chip and most new systems include a socket for that chip.

There is also “Device Encryption” for non-Pro/Etc users but requires TPM and InstantGo hw support AND logging into an administrative domain (like one gets with Win10).

But for that much paranoia we prefer self encrypting drives – no OS dependency and we can use them in local systems or in the storage systems we build for our NERC, etc. customers.