Skip to content

Unencrypted Endpoint Drive

An unencrypted endpoint drive on a Windows or macOS device stores data without encryption, making it vulnerable to unauthorized access if the device is lost or stolen.

Creating a new Unencrypted Endpoint Drive policy

To create a new Unencrypted Endpoint Drive policy:

  1. Access the Device Posture page.

  2. Select + ADD:

    Add new device posture policy
  3. Select Add to Windows or Add to macOS:

    Add new device posture policy

    Coro displays the Add new device policy dialog.

  4. Select Unencrypted Endpoint Drive from the Select policy type dropdown:

    Add new Unencrypted Endpoint Drive policy
  5. Select the policy Action:

    • Review: Coro does not perform auto-remediation for violations of this policy type. It creates a ticket that remains open for admin review for 10 days, after which it closes automatically. During this time, Coro adds any new violation events to the same ticket. If the device is encrypted, or the admin user allows no encryption (see Unencrypted endpoint drive tickets, Coro closes the ticket as resolved. Admin users can close the ticket manually at any time.

    If the policy violation reoccurs after a ticket is closed, Coro automatically creates a new ticket, even if the original ticket is reopened at a later date.

  6. To apply the policy to specific device groups, select device labels from the Labels dropdown:

    Apply device policy labels
  7. To create the policy, select SAVE.

    When encryption is disabled on a device drive, Coro creates an Unencrypted endpoint drive ticket.

To view the policy, select the dropdown next to Unencrypted Endpoint Drive on the Device Posture page.

Coro displays the following policy details:

  • The applicable policy device labels.

  • The selected policy action.

    View Unencrypted Endpoint Drive policy

For more information on Windows device drive encryption, see Encrypting endpoint device drives.