Encryption of hard drives using Kaspersky Disk Encryption technology

Before encrypting hard drives on a computer, we recommend making sure that the computer is not infected. To do so, start the Full Scan or Critical Areas Scan task. Encrypting the hard drive of a computer that is infected by a rootkit may lead to its inoperability.

To encrypt hard drives using Kaspersky Disk Encryption technology:

  1. Open the Administration Console of Kaspersky Security Center.
  2. In the Managed devices folder in the Administration Console tree, open the folder with the name of the administration group for which you want to configure encryption of hard drives.
  3. In the workspace, select the Policies tab.
  4. Select the necessary policy.
  5. Open the Properties: <Policy name> window by using one of the following methods:
    • In the context menu of the policy, select Properties.
    • Click the Configure policy link located in the right part of the Administration Console workspace.
  6. In the Data Encryption section, select the Encryption of hard drives subsection.
  7. In the Encryption technology drop-down list, select the Kaspersky Disk Encryption option.

    Kaspersky Disk Encryption technology cannot be used if the computer has hard drives that were encrypted by BitLocker.

  8. In the Encryption mode drop-down list, select Encrypt all hard drives.

    If you need to exclude some of the hard drives from encryption, create a list of such hard drives.

  9. Select one of the following encryption methods:
    • If you want to apply encryption only to those hard drive sectors that are occupied by files, select the Encrypt used disk space only check box.

      If you are applying encryption on a drive that is already in use, it is recommended to encrypt the entire drive. This ensures that all data is protected - even deleted data that might still contain retrievable information. The Encrypt used disk space only function is recommended for new drives that have not been previously used.

    • If you want to apply encryption to the entire hard drive, clear the Encrypt used disk space only check box.

      This function is applicable only to unencrypted devices. If a device was previously encrypted using the Encrypt used disk space only function, after applying a policy in Encrypt all hard drives mode, sectors that are not occupied by files will still not be encrypted.

  10. Click OK to save changes.
  11. Apply the policy.

    View the Kaspersky Security Center Administrator's Guide for details on applying the Kaspersky Security Center policy.

