2 scenarios will trigger the decrypt command on the device automatically:
- Uninstallation of Security Agent via the Web Console, Windows Programs and Features or using the SA Uninstall Tool.
- License expired for more than 30 days.
Hence, admin does not need to trigger the Decrypt command before uninstalling the Security Agent.
Admin can trigger the Encrypt command on the target device. However, the status may still change to say "Unable to encrypt" if the device is not supported or if the system partition is less than the required size. Click the hyperlink of the Encryption Status to know more information about the status.
The Recovery key will be moved automatically.
You may obtain the Recovery Key from the WFBS-SVC web console.
For more information, refer to the “Getting Recovery Keys” section in the KB article: Managing Full Disk Encryption in Worry-Free Business Security Services (WFBS-SVC).