Advanced tasks
38
Administration manual 4603.7988.02 ─ 03
6.4.2.2
Configuring stealth mode
Make this configuration
before
activating the full-disk encryption.
1. Open
C:\Program Files (x86)\Sirrix AG
.
\TrustedDisk\Bootloader\grub.cfg
.
2. Set "tdshowplain" to
0
.
3. Save your changes.
You have prepared the workstation for its full-disk encryption.
Full-disk encryption
During the full-disk encryption, deactivate the option "Encrypt all sections" so that the
other Windows partition is left unencrypted. Only select one of the two partitions for
encryption.
6.5
Decryption and data recovery
If an encrypted workstation can no longer boot, you can decrypt and recover your data.
For this purpose, our support team provides a rescue CD.
This feature is not intended to uninstall or remove R&S
Trusted
Disk; it only works for
recovering data.
After the decryption, you have the following options to recover your data:
●
Boot the workstation as usual
Sometimes, the decryption fixes the boot problem and Windows boots as usual.
Note:
In this case, the hard disk drive is automatically encrypted again.
●
Use a live operating system
Boot the workstation from a live CD or USB drive (e.g. Linux live). To copy the
decrypted data, connect a storage device (e.g. external hard disk drive, USB
drive).
Note:
The live operating system must support NTFS.
●
Mount the decrypted hard disk drive to another workstation
To access the decrypted data, remove the hard disk drive and put it in another
workstation.
Note:
The operating system on the second workstation must support NTFS.
Decryption and data recovery