We are using Sophos Central and also have an Active Directory domain. Is there ANY way for the following scenarios to work?
Scenario 1 (non-domain beginning)
Non-domain computer gets installed with the Sophos client, including the encryption component. After installation, the computer is added to a group that has the encryption policy linked to it, so that Bitlocker is started and the encryption progresses. The option to retrieve the key shows in Sophos Central. How do we get that key to also backup to Active Directory so that the key exists in both AD and Sophos Central? If we retrieve the key in Sophos Central (which automatically changes the key after that), how to make that change automatically show in Active Directory.
Scenario 2 (domain beginning)
Domain joined machine is using Bitlocker policies for encryption, and the key exists in Active Directory. Sophos is installed, but since the computer encryption was not done in Sophos Central, it does not see a recovery key or even show the computer is encrypted. How do we get the key to show in Sophos Central as well? Is there any way to have Sophos Central see that the machine is actually encrypted?
It seems like it's either one or the other as far as the key visibility, which doesn't seem right considering Sophos Central is an enterprise solution, yet Sophos does not seem to have the documentation needed to clear things up. Any help would be great.
This thread was automatically locked due to age.