Sign In with your
Trend Micro Account
Need Help?
Need More Help?

Create a technical support case if you need further support.

Syncing Active Directory (AD) password and preboot password on Full Disk Encryption (FDE) 3.1.2 device

    • Updated:
    • 26 Feb 2015
    • Product/Version:
    • Endpoint Encryption 3.1 Full Disk Encrypti
    • Platform:
    • Windows 7 32-bit
    • Windows 7 64-bit
    • Windows Vista 32-bit
    • Windows Vista 64-bit
    • Windows XP Professional
Summary

On FDE 3.1.2 device, a User's AD password has changed and is now different from the FDE preboot password. The device does not have a connection to the PolicyServer at the FDE preboot.

Learn how to sync your AD password and your preboot password in Windows with a connection to the PolicyServer.

Details
Public

To sync your AD password and your preboot password with a connection to the PolicyServer, you can use SyncPassword tool.

This tool is designed to do the following:

  • Sync a User’s Domain Password to the password stored in and used by FDE
  • Initially authenticate a User onto a device.

The tasks above can be accomplished by running this tool in Windows with a connection to the PolicyServer.

To use the tool, do either of the following:

  1. Open the Tools folder from the FDE 3.1.2 software.
  2. Copy the SyncPassword tool to C:\Program Files\Trend Micro\DataArmor.
  3. Double-click the file SyncPassword.exe to run the file.
  4. Type the User’s username in the User Name field.
  5. Indentify the password:
    • For a User in a Domain group, the password would be their current Domain Password set in Active Directory.
    • For a User in a Non Domain or Non TokenAuthentication group, the password would be the Fixed Password set in the PolicyServer.
  6. Enter the User’s Password in the Password field.
  7. Click Continue.
  8. Click OK when "Password Sync is Completed" message appears.
  9. Click Cancel to close the tool.
  1. Open the Tools folder from the FDE 3.1.2 software.
  2. Copy the downloaded file to C:\Program Files\Trend Micro\DataArmor. Launch the file from this location.
  3. Double-click the file SyncPassword.exe to run the file.
  4. Type the User’s username in the User Name field.
  5. Identify the password by:
    • For a User in a Domain Authentication group, the password would be their current Domain Password set in the Active Directory (AD).If the Domain User is set in Active Directory, then they must change their password after logging in. This should be done at the Windows Log on prior to using this tool.
    • For a User in a Non-Domain Authentication group, the password would be the Fixed Password or the One Time Password that is assigned to the User in the PolicyServer MMC.
      • i. If a One Time Password is assigned to the User in a Token Authentication Group, they will not get a prompt to register a Token until they authenticate using their cached User Name and One Time Password at the TMFDE preboot.
      • ii. This tool is not recommended to be used if the intention is to initially authenticate a User that is assigned a One Time Password in the PolicyServer and have them change to a Fixed Password. The tool does not allow the password to be changed in Windows. In this case, the User’s password would only be cached on the device and the PolicyServer would display NONE as their authentication method.
  6. Enter the User’s Password in the Password field.
  7. Click Continue.
  8. Click OK when "Password Sync is Completed" message appears.

  9. Click Cancel to close the tool.
Premium
Internal
Rating:
Category:
Troubleshoot
Solution Id:
1095148
Feedback
Did this article help you?

Thank you for your feedback!

To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary:
We will not send you spam or share your email address.

*This form is automated system. General questions, technical, sales, and product-related issues submitted through this form will not be answered.

If you need additional help, you may try to contact the support team. Contact Support


To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary:
We will not send you spam or share your email address.

*This form is automated system. General questions, technical, sales, and product-related issues submitted through this form will not be answered.


Need More Help?

Create a technical support case if you need further support.