Full Drive Encryption on Windows File Server | CompTIA Security+ SY0-601 Exam

Implementing Full Drive Encryption on a Windows File Server

Prev Question Next Question

Question

Due to regulatory requirements, a security analyst must implement full drive encryption on a Windows file server.

Which of the following should the analyst implement on the system to BEST meet this requirement? (Choose two.)

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D. E.

BD.

The BEST way to implement full drive encryption on a Windows file server is to enable and configure BitLocker on the drives. This will encrypt the entire drive and protect the data stored on it. BitLocker is a full-drive encryption feature that is built into the Windows operating system, and it is easy to use and configure.

In addition to enabling and configuring BitLocker, it is also important to ensure that the hardware supports TPM (Trusted Platform Module), and enable it in the BIOS. TPM is a hardware-based security feature that provides a secure way to store encryption keys used by BitLocker. Enabling TPM in the BIOS will ensure that the encryption keys are stored securely, making it much more difficult for attackers to access the data.

Therefore, the correct answers to the question are D and B.

Option A, Enable and configure EFS on the file system, is not the best choice for this scenario because EFS (Encrypting File System) provides file-level encryption, not full-drive encryption.

Option C, Ensure the hardware supports VT-X, and enable it in the BIOS, is not relevant to this scenario as VT-X (Virtualization Technology for x86) is a feature that enables hardware-assisted virtualization, and it does not have anything to do with full-drive encryption.

Option E, Enable and configure DFS across the file system, is not relevant to this scenario as DFS (Distributed File System) is a technology that allows for the management of multiple file shares across a network, and it does not provide any encryption capabilities.