Overview
This paper provides a complete workflow for administering FileVault on computers with
OS X v10.11.
Activating FileVault disk encryption involves the following steps:
-
Choose a recovery key.
-
Create and export an institutional recovery key (for institutional recovery keys only).
-
Create a disk encryption configuration.
-
Deploy the disk encryption configuration.
After activating FileVault disk encryption on computers, you can create smart computer groups to use as the basis for performing the following additional tasks:
-
View FileVault information for a computer.
-
Issue a new FileVault recovery key to computers.
-
Enable or disable a local account for FileVault.
-
Enable or disable the management account for FileVault.
-
Access encrypted data.