Configuring CTE for Windows with CipherTrust Manager
This section describes how to install and configure CTE on Windows systems that you plan to register with a CipherTrust Manager.
The installation and configuration process consists of three basic steps:
-
Gather the information needed for the install and set up your network as described in Installation Prerequisites.
-
Install CTE on the protected host as described in Interactive Installation on Windows or Silent Installation on Windows.
-
Register the protected host with a key manager and make sure that they can communicate with each other. This process can be done as part of the initial installation or at any point after the CTE Agent has been installed.
-
You can use External Certificates for communication between CTE and CM. Install the external certificate before registering CipherTrust Transparent Encryption with CipherTrust Manager.
Assumptions
-
The IP addresses, routing configurations, and DNS addresses allow connectivity between the key manager and all hosts on which the CTE Agent is installed.
-
If the protected host is a virtual machine, the VM is deployed and running.
-
For all types of upgrades, including interactive (GUI-based) and scheduled upgrades, the protected host must be able to connect to the key manager that it is registered to or the upgrade will fail.
Requirements
-
You must install CTE on the system drive. Do not install CTE on a network share volume.
-
The host on which you want to install CTE must support AES-NI hardware encryption.
Setting the CipherTrust Manager log for Ransomware Protection
You need to configure the logging level on CipherTrust Manager to INFO instead of the default, which is ERROR.
To define client log configurations for a profile:
-
Open the Transparent Encryption application.
-
In the left pane, click Settings > Profiles.
-
Click on the name of the relevant profile.
-
Click CLIENT LOGGING CONFIGURATION to expand it.
-
Set the Log Level to INFO.
-
Click Update. The changes are effective immediately and apply to the clients linked with the profile.
The CTE client logs can be seen on the Records > Client Records page of the CipherTrust Manager GUI. Filter the records by Client Type and look for the CTE records.