For encrypting
Pocket PCs
The scalable SafeBoot® Device
Encryption™ solution provides
strong access control and industry-leading,
award-winning boot protection and two-factor
pre-boot authentication (F2-PBA™)-in
addition to standard password and PIN
authentication-to prevent unauthorized
access to Pocket PCs and other devices
that run Pocket Windows® 2002,
Pocket Windows® 2003, Mobile Edition,
2003 SE, and Mobile Edition SE.
SafeBoot® Device Encryption™
requires both users and machines to
be authenticated before the system boots,
and its features include secure hibernation,
pre-boot event logging, an optional
data bomb, token support, and integration
with SafeBoot® Management Center™
for password reset and policy synchronization
with Active Directory®, Novell®,
PKI, and others. Encryption of internal
data, files, databases, and memory cards
is performed transparently and automatically
when the device is turned on and off.
SafeBoot® Device Encryption™
enables multiple users to sign on to
one machine, each with unique keys.
Transfer of compatible data between
Pocket PCs and PCs or other devices
is secure and transparent, and no specific
software needs to be installed on hosts
for synchronization.
SafeBoot® Device Encryption™
enables administrators to fully control
what is encrypted internally and externally,
whether removable media should be encrypted,
if a device can synchronize with anything
other than the machine from which it
was installed, and more. Password recovery
is performed through a standard challenge/response
mechanism. Also, along with easy central
rollout and deployment, SafeBoot®
Device Encryption's™ full central
management capabilities include audit
facilities, hot revocation, remote updates,
and enforcement of mandatory enterprise-wide
security policies.