Information Technology Reference
In-Depth Information
FIGURE 2-32 The Certificate Import Wizard
5. Enter the password of the .pfx file you exported and complete the wizard.
Configuring Group policy settings for Network Unlock
To configure the Group Policy settings for Network Unlock, you need to deploy the certificate
to the clients that will use it. To do this, follow these steps:
1. Copy the .cer file that was created earlier to a domain controller for the domain on
which you're enabling Network Unlock.
2. Open the Group Policy Management Console (GPMC).
3. Create and edit a new GPO or modify an existing one to enable the Allow Network
Unlock At Startup setting. This setting is in Computer Configuration\Policies\
Administrative Templates\Windows Components\BitLocker Drive Encryption\Operating
System Drives.
4. Select the Computer Configuration\Policies\Windows Settings\Security Settings\
Public Key Policies\BitLocker Drive Encryption Network Unlock Certificate folder in
the console tree.
5. Right-click and select Add Network Unlock Certificate to add the .cer file you copied
from the WDS server.
 
Search WWH ::




Custom Search