We are looking to switch from using McAfee Drive Encryption to using McAfee Management of Native Encryption.
Currently we have all laptops encrypted using DE/EEPC 7.1; and would like to make this switch as seamless as possible, with the disk being left unencrypted for the least amount of time possible.
Has anyone done this already? or is there a recommended process we should follow?
We decided to switch for a few reasons; but mainly due to BitLocker meeting our encryption requirements (after an internal policy change) & being less components to manage on the clients.
Using MNE to manage BitLocker (rather than GPO) meant we mostly kept the same process for our support staff to look up recovery keys from ePO.
Still trying to put together a good strategy to switch though...
Seems to be difficult to make MNE start BitLocker up immediately after decryption via DE (looks like DE needs to be uninstalled completely + Reboot)