DriveLock Product Feedback & Ideas
Share your ideas for DriveLock.
Teilen Sie Ihre Ideen mit DriveLock.
82 results found
-
Citrix VDI and Terminal Server Golden Images should not be counted as a consumed license (from DOC).
Citrix VDI and Terminal Server Golden Images should not be counted as a consumed license (from DOC).
1 voteAt first glance, this use case seems sensible. However, the image is created from a computer with an agent and needs a license. After 30 days, an inactive computer is no longer counted anyway.
-
automatish push installation should support tenant
it seems automatic push installation supports only root tenant
1 voteIn any case, we are currently checking whether this feature should be discontinued in principle. In the cloud environment, this is not an option anyway. Software distribution does the job better.
-
Ability to disable Logging for specific uses of the Usage Policy
When using a Usage Policy with different rules we would sometimes not want the rule to be logged with our enterprise Service (or at least be able to filter it out of our log).
Example:
We have one Rule that creates Usage Policies that we want to see to validate the device daily and add it to the permanent whitelist.
We have a different rule where we would like to show a Usage Policy to that user group for certain devices they connect. We have no need to see this Log in our DOC.Right now we either get all…
1 vote -
Use fingerprint and/or face recognition at DriveLock PBA (Windows Hello support)
When using the Drivelock PBA with Yubikeys to implement a 2FA, the use of fingerprint scanners and facial recognition is not possible. Login works with PIN or username/password.
We have notebooks with fingerprint and face recognition in use. If you activate the functionality in Windows, the Drivelock PBA does not work anymore. The PBA cannot be installed or uninstalled. The PBA users are not synchronized. This means that the additional logon methods cannot be used. With the PBA fingerprint and face recognition should be possible.1 voteThe current PBA does not support face recognition or fingerprint. UEFI does not support that. The request is closed. There is a possibility that we will revisit the issue at some point with further development. Thank you for your understanding.
-
Using VMWare workstation , USB Device can be accessed in VM Client even though it is blocked in host machine..
Using VMWare workstation , USB Device can be accessed in VM Client even though it is blocked in host machine..
1 votePlease contact your support partner or our support team in case of problems. There you will get assistance in analyzing any error and fixing the issue.
-
Deactivate MQTT on the server
It should be possible to disable MQTT on the server side as well. The existing option to disable MQTT on the client side via policy is not sufficient in my opinion. It should best be configurable via a feature in the DMC UI.
1 voteDisabling MQTT by policy provides a way to respond to restrictions on the use of MQTT communications in certain situations and environments.
We do not foresee disabling MQTT server-side at this time, as it is a central part of the DriveLock components' technical communication, the use of which will continue to expand in the future.
-
Support Imprivata credential provider
For synchronization of users/credentials and for a Windows SSO after successful authentication of the user at the DriveLock PBA, a connection of the DriveLock Credential Provider to the Credential Provider of the Imprivata Agent is required (Credential Provider Wrapper).
1 voteAktuell planen wir keine Integration in diese Richtung. Sollte sich dies in Zukunft ändern oder zusätzliche technische Grundlagen vorliegen, prüfen wir das Thema gerne erneut.
Vielen Dank für Ihr Verständnis.
Mit freundlichen Grüßen,
Produktmanagement | DriveLock SE
-
Manual input of the stored uninstall password
Enable manual entry of the stored uninstall password. Either during uninstallation via "Programs and Features" or another entry "Uninstall Agent" via the systray icon of the DL Agent.
1 voteThank you for posting this request on our feedback forum.
This uninstall password is an additional layer of security to prevent local admins in environments without a zero trust approach from uninstalling the DriveLock agent part.
If for any reasons a single agent needs to be removed we already provide the possibility to use the following administration command-line:
msiexec /x DriveLockAgent.msi UNINSTPWD=<your_password>
The password is checked before the inner MSI part is executed. We would have to change this in order to fulfill requests like this one and decided not to lower security measures here, a while ago.
Please feel free to get in touch with us directly to discuss this in more detail.
-
Nach dem Test die Fehler anschauen
Leider ist es in der Aktuellen Version nach Abschluss der Fragen nicht möglich zusehen was man falsch beantwortet hat man sieht nur unten die runden Punkte mit X wenn man darauf kickt passiert nichts, hier wäre es gut die Frage nochmals zu sehen mit was wurde geantwortet und was wäre richtig gewesen
1 vote -
Fehler Auswertung der Kampagne im DOC
Ist es möglich das im DOC nicht nur die Anzahl der Fehler ausgewertet werden können, sondern auch Welche Fehler gemacht wurden?
Von welchen Benutzern1 vote -
DriveLock Linux Agent should be able to send all existing events to other external systems via email
As an administrator I want to let the Linux Agent send all drivelock agent events also to external systems.
It should work similar like DriveLock Agents for Windows OS.
If we can define a priority, we would like to see the following priority order (for implementing):
1) SMTP (email, supporting TLS/SSL)
2) SNMP1 voteplease see comment
-
Configure automatic temporary unlock in the future (from time x to time y)
We have repeated requests for USB releases for specific time periods in the future. Would it be possible in the helpdesk temporary unlock window to select a period in the future with time and date specification?
1 voteAfter much deliberation, we have decided to respectfully decline this feature request.
-
Increase rule count limit under "user selection" rules
Currently the "User selection" rule under Encryption 2-Go or File Protection allows a maximum of three (3) selectable rules. Suggesting to increase this limit to at least five (5) rules if possible.
1 vote -
DOC: Refresh individual widgets
Currently you can only refresh the whole dashboard tab. Suggesting to also add the feature to allow refreshing a specific widget as needed.
1 voteRefreshing the dashboard is fast and all widgets are usually updated within 1-2 seconds.
The effort for implementing this would exceed the value/outcome.
When an auto-update capability will be available, the need for this is estimated even lower. -
€ Enable EURO characters for the BitLocker PBA (Unicode/UTF-8 character set)
Integrate the full Unicode/UTF-8 character set for the BitLocker PBA.
Currently the € character is not accepted.
Example: the users log in to the PBA with their Windows data (login name and Windows password). The Windows password contains the special character €. This € symbol is currently not supported, displayed, accepted in the PBA, so this user cannot authenticate in the PBA.1 voteUefi PBA doesn't have and never had Unicode (UTF8) support. So all non ASCII chars will not work (this includes the EuroSign as well as most of the Keyboard layouts).
Until now such a feature-request is not prioritised.
-
DCC User.config
Es sollte möglich sein den Speicherort der user.config oder Ihren Inhalt anzupassen, um einen DES als Standard für das ControlCenter zu setzen oder die Datei im Roaming Profil zu speichern.
Wir verwenden u.a. Citrix um das DCC zur Verfügung zu stellen. Dadurch müssen die betroffenen Kollegen für die Verwendung des DCC fast täglich den DES eintragen.1 voteNach finaler Prüfung werden wir keine Änderungen mehr am DCC durchführen, welches durch das DOC abgelöst wird und schon heute genutzt werden kann.
Mit der Version 2021.1 wird auch “Scheduled Reporting” zur Verfügung stehen. -
Multitenant overview in Management Console policy view (CSP)
With the new version 2020 we lost the ability in DriveLock Management console to have an overview on all defined CSP policies. This function was present in older version and is greatly missed by admins who controll multitenant environment.
Maybe a setting in the database can restore the view?
1 voteDeclined: Cross-tenant policy overview conflicts with tenant isolation and would require major redesign. Not aligned with current priorities; tenant-based management remains the supported approach.
-
Feature Request, Want to be able to boot into the Windows 10 Save Mode directly from the DriveLock PBA.
Today most modern Notebooks and Desktops are too fast booting so it is very hard to catch the blue Windows Save Mode Option SCreen by pressing quickly CTRL+F8
just after the PBA login screen. With our notebook series nearly impossible.
So we want to have a feature enabled within the PBA (enabled by DriveLock policy Settings) that when we press CTRL+F8
within the PBA, the system will authenticate (like pressing enter) but then go into the Windows SaveMode menu instead.1 voteAlthough this is a valid concern and we see the customer value, this is not possible due to technical limitations.
After successful authentication we can only trigger the MS bootloader, there is no option to pass to this function which then could force Windows to boot the Save Mode. We have found no other way to bypass this limitation. -
Policy "Export ..." Button, inside of the "Properties..." Popup
Create an easy policy export button inside of the properties popup
1 voteToday you already can export any opened policy easily:
1. Click on the top-most node on the left side in the MMC
2. Click on the “Export policy…” button on the right side -
DriveLock File Protection Linux support
I'd like to access files stored in a folder encrypted by DriveLock File Protection from my Linux workstation the same seamless way, I can access it from my Windows laptop.
1 vote
- Don't see your idea?