Configuring Sophos SafeGuard Enterprise Disk Encryption

Imprivata Enterprise Access Management supports Sophos® SafeGuard® Enterprise disk encryption on Microsoft Windows endpoints with an Imprivata single-user computer or Imprivata shared kiosk workstation agent.

Supported Sophos SafeGuard Enterprise Configurations

Enterprise Access Management desktop authentication support for Sophos SafeGuard Enterprise disk encryption is based on the operating system of the Windows endpoint computers. See the Enterprise Access Management with SSO Supported Components matrix to verify that Enterprise Access Management supports your Sophos version.

Streamlining the Authentication Workflow

Configuring BitLocker and Sophos to Streamline Windows Desktop Authentication

By default, BitLocker prompts users to enter a password before starting the operating system on Windows endpoint computers. The following steps detail how to configure the environment to automatically use a BitLocker startup key, which streamlines the desktop authentication workflow.

This process includes the following steps:

Windows Desktop Authentication Workflows

By default, BitLocker requires users to enter a password before loading the operating system.

NOTE: The following workflows apply to a Sophos deployment that is synchronized with the same user directory domain controller as the appliance.