Managing client computers System management helps administrators import system information from the Active Directory server into McAfee ePO. This is useful in the process of installing Drive Encryption and assigning the users to the systems. Add a system to an existing system groupUse McAfee ePO to import systems from your Network Neighborhood to groups for working with Drive Encryption. You can also import a network domain or Active Directory container. Move systems between groupsYou can move systems from one group to another in the System Tree. You can also move systems from any page that displays a table of systems, including the results of a query. Select the disks for encryptionTo encrypt the target disk on your client system, you need to select the required encryption type and set the encryption priority from the Product Setting policy available with the Drive Encryption product. Enable or disable automatic booting The Drive Encryption Pre-Boot logon environment allows you to select a logon method and to require authentication credentials such as user name and password. Enable or disable temporary automatic bootingDrive Encryption allows you to turn on the Pre-Boot authentication screen with a client-side utility. This feature eliminates the need to modify the policy in McAfee ePO, and fully automates patching and other client management scenarios. Set the priority of encryption providersThe priority of the encryption providers (PC software and Opal) can be set using the Drive Encryption Product Setting policy. Maintain a list of incompatible productsUsing McAfee ePO, you can create and import a rule with a set of product names that are marked as incompatible with Drive Encryption. Enable accessibility (USB audio devices) in the Pre-Boot environment The USB audio functionality enables visually challenged users to listen to a voice (spoken words) as guidance when the user moves the focus from one field to the next using mouse or keyboard in the Pre-Boot environment. Allow user to reset self-recovery answers The client user's self-recovery details can be reset using the Allow users to re-enroll self-recovery information at PBA option available with the Product Settings policy. Manage the default and customized themesThe default theme is downloaded to the client system when the DEAgent and Drive Encryption software package deployment task is sent to the client computers. You can add and manage a theme to be used as a background in the Pre-Boot Authentication page. Assign a customized theme to a systemYou can customize an existing theme and assign it to a client system and the customized theme can be used as a background in the Pre-Boot Authentication page. Manage simple wordsUse McAfee ePO to add and manage simple words that can't be used as passwords. The Drive Encryption simple words are added to the Master Repository when you select Regenerate Missing Simple Word package in Manage Simple Words that is available after the EEAdmin.zip extension is installed on McAfee ePO. Drive Encryption system recovery The purpose of encrypting the client's data is to control access to the data by controlling access to the encryption keys. It is important that keys are not accessible to users. Managing servers and client systems — general recommendations Client deployment in batches for a considerable number of systems is a good practice in itself. Configure role-based access control for managing Drive Encryption ePolicy Orchestrator administrator rights management determines what administrators can do while managing the Drive Encryption software.