This section shows the Operating system compatibility depending on the TMEE product installed on the endpoints.
Full Disk Encryption
- Version 6.0.0.3204: Windows 10 21H2
- Version 6.0.0.3153: Windows 10 1909/19H2
- Version 6.0.0.3051: Windows 10 1903/19H1
- Version 6.0.0.2056: Windows 10 1709 RS3
- Version 6.0.0.1514: Windows 10 1709 RS3
File Encryption
- Version 6.0.0.3066: Windows 10 21H2
- Version 6.0.0.3027: Windows 10 20H2
- Version 6.0.0.2018 (6.0 L10n): Windows 10 1709 RS3
- Version 6.0.0.1070: Windows 10 1709 RS3
Encryption Management for Microsoft Bitlocker
- Version 6.0.0.3072: Windows 10 22H2 and Windows 11 22H2/23H2
- Version 6.0.0.3036: Windows 10 22H2 and Windows 11 22H2/23H2
- Version 6.0.0.3018: Windows 10 22H2 and Windows 11 22H2
- Version 6.0.0.3013: Windows 10 1903 19H1
- Version 6.0.0.2020 (6.0 L10n): Windows 10 1709 RS3
- Version 6.0.0.1042: Windows 10 1709 RS3
Encryption Management for Apple Filevault
- Version 6.0.0.3253: MacOS 10.11 ~ 11.0, Support T2 chip
- Version 6.0.0.3240: MacOS 10.11 ~ 10.15, Support T2 chip
- Version 6.0.0.3010: MacOS 10.8 ~ 10.14, Support T2 chip
- Version 6.0.0.3009: MacOS 10.8 ~ 10.13
- Version 6.0.0.2018 (6.0 L10n): MacOS 10.8 ~ 10.12
- Version 6.0.0.1033: MacOS 10.8 ~ 10.12
Operating System | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Endpoint Encryption | Windows Server 2008 | Windows Server 2008 R2 | Windows Server 2012 | Windows Server 2012 R2 | Windows Server 2016 | Windows Server 2019 | Windows Server 2022 | Windows XP | Windows 7 | Windows 8 | Windows 8.1 | Windows 10 | Windows 11 | Mac OSX |
Policy Server | ✔ | ✔ | ✔ | ✔ | ✔ | ✔ | ✔ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ |
PolicyServerMMC | ✔ | ✔ | ✔ | ✔ | ✔ | ✔ | ✔ | ✘ | ✔ | ✔ | ✔ | ✔ | ✘ | ✘ |
Full Disk Encryption | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✔ | ✔ | ✔ | ✔ | ✘ | ✘ |
File Encryption | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✔ | ✔ | ✔ | ✔ | ✘ | ✘ |
Encryption Management for Microsoft Bitlocker | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✔ | ✔ | ✔ | ✔ | ✔ | ✘ |
Encryption Management for Apple Filevault | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✘ | ✔ |
Windows 10 Compatibility
- Version 1607 (Anniversary Update)
- Version 1703 (Creators Update)
- Version 1709 (Fall Creators Update)
- Version 1803 (April 2018 Update)
- Version 1809 (October 2018 Update)
- Version 1903 (May 2019 Update)
- Version 1909 (November 2019 Update)
- Version 2004 (May 2020 Update)
- Version 20H2 (October 2020 Update)
- Version 21H1 (May 2021 Update)
- Version 21H2 (November 2021 Update)
Mac OSX Compatibility
- OS X™ "Big Sur" - TBA
- OS X™ "Catalina"
- OS X™ "Mojave"
- OS X™ "High Sierra"
- OS X™ "Sierra"
- OS X™ "El Capitan"
Hardware and Scaling Requirements
The following shows deployment and scaling requirements in several different-sized environments. In smaller network environments, PolicyServer SQL databases can be installed on the same server. For PolicyServer deployments in environments greater than 1500 devices, Trend Micro recommends having at least two dedicated servers:
- A dedicated server for the PolicyServer services, also known as the "front-end server"
- A dedicated server for the database, or add the database to an existing SQL cluster
The following table displays the requirements for the PolicyServer SQL database for the basic requirements at the specified scale:
Devices | Policy Server Front-end Requirements | Policy Server SQL Database Requirements |
---|---|---|
1,000 |
| Installed on PolicyServer front-end server |
4,000 |
| Installed on PolicyServer front-end server |
8,000 |
|
|
20,000 |
|
|
40,000 |
|
|
- Virtual hardware is supported under VMware Virtual Infrastructure.
- Microsoft or VMware on virtual hardware does not support Microsoft Cluster Service.
- Baseline testing was performed on an endpoint with an Intel Xeon CPU E5-2650 v4 2.20 GHz, 2200 Mhz.
Redundancy Requirements
With larger environments, Trend Micro recommends adding additional servers to avoid having single points of failure. The following table displays the requirements for the PolicyServer SQL database for an environment with increased redundancy.
Devices | Policy Server Front-end Requirements | Policy Server SQL Database With Zero Points of Failure |
---|---|---|
8,000 |
|
|
20,000 |
|
|
40,000 |
|
|
Software Requirements
Specification | Requirements |
---|---|
Database server |
|
Application server |
PolicyServer 6.0 Patch 1 requires Microsoft Internet Information Services (IIS) with the following roles installed and enabled:
For Windows Server 2008 and 2008 R2 you must install the "Application server" role and the "Web server" role. Additionally, you must add SMTP and Microsoft IIS Support features. Legacy Endpoint Encryption environments (version 3.1.3 and earlier) require Client Web Service. If you install Client Web Service on a remote endpoint, install Microsoft IIS on that endpoint. |
Other software |
|
- For SQL Server:
- Mixed Mode Authentication (SA password) installed and Reporting services installed
- For Application Server:
- On Windows Server 2008 and 2008 R2 you must install the "Application server" role and the "Web server" role. Additionally, you must add SMTP and Microsoft IIS Support features.
- Legacy Endpoint Encryption environments (version 3.1.3 and earlier) require Client Web Service. If you install Client Web Service on a remote endpoint, install Microsoft IIS on that endpoint.
Software Requirements
Specification | Requirements |
---|---|
Processor | Intel Core 2 Duo 2.0 GHz processor or equivalent |
RAM | 1 GB |
Disk space |
|
Network connectivity | Communication with PolicyServer required for managed agents |
Operating system |
|
Windows 10 Version Compatibility |
|
Hard disk |
Full Disk Encryption uses software-based encryption for all standard drives (drives without self-encryption). Full Disk Encryption uses hardware-based encryption for the following self-encrypting drives (SEDs):
Full Disk Encryption has the following limitations:
|
Hard disk controllers |
|
Other software | Microsoft .NET Framework 3.5 SP1(Windows 7 and later operating systems)
Full Disk Encryption is not compatible with other versions of the Microsoft .NET Framework.
|
Trend Micro recommends checking if the endpoint is compatible. For the Pre-Install checklist, you may refer to this article:
https://success.trendmicro.com/solution/KA-0007514
For the list of compatible SED, you may refer to this article:
https://success.trendmicro.com/solution/KA-0006199
For the list of compatible Network Cards, you may refer to this link:
https://success.trendmicro.com/solution/KA-0006309
Software Requirements
Specification | Requirements |
---|---|
Processor | Intel Core 2 Duo 2.0 GHz processor or equivalent |
RAM | 1 GB |
Disk space |
|
Network connectivity | Communication with PolicyServer required for managed agents |
Operating system |
|
Other software |
|
Software Requirements
Specification | Requirements |
---|---|
Processor | Intel Core 2 Duo 2.0 GHz processor or equivalent |
Memory |
|
Disk space | 400 MB minimum |
Network connectivity | Connectivity with PolicyServer |
Operating system |
|
Other software |
|
Hardware considerations |
|
Software Requirements
Specification | Requirements |
---|---|
Processor | Intel Core 2 Duo 2.0 GHz processor or equivalent |
RAM | Requirements are the based on Windows system requirements:
|
Disk space |
|
Hard disk | Standard drives supported by Windows
Encryption Management for Microsoft BitLocker installation is only supported on endpoints with 1 physical hard disk drive (multiple partitions are supported). Encryption Management for Microsoft BitLocker can’t support when the system partition is not the first partition of the disk. |
Network connectivity | Connectivity with PolicyServer |
Operating System |
|
Other software |
Full Disk Encryption is unable to install on SED disks attached to devices using UEFI if these disks were previously managed by Windows Bitlocker. To install Full Disk Encryption on these disks, perform one of the following:
|