Management of Native Encryption on Mac shows FIPS disabled
Hi, we use MNE to report on encryption status for Mac mobile devices. We have not been using it to enforce encryption since we can never seem to get it to work, so we manually encrypt the machine with Filevault and install MNE in a report only mode.
I am noticing as I've had to reload a couple machines that they are reporting to EPO as FIPS mode being disabled. In the past, when I've turned on Filevault manually and installed MNE to report on status, FIPS mode is shown as enabled. There is nothing different between my process for turning on Filevault now than there was before, just the manual way through the Security and Privacy settings on the Mac, but now a few machines have been reloaded and FIPS is shown as disabled.
I am not aware of any particular steps or options within the Filevault encrypting process that allows me to "choose" FIPS mode, and Macs that have existed in EPO and have not been reloaded still show their FIPS mode as enabled.
Where does MNE get this FIPS information from on the Mac? Does anyone know of a way to "enable" FIPS mode on a Mac so MNE can report it as enabled?
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.
Community Help Hub
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.