From 6cb2cc67a7cdfb604106a2aeabfc4e24e3a97d42 Mon Sep 17 00:00:00 2001 From: Marko Lisica <83164494+marko-lisica@users.noreply.github.com> Date: Tue, 18 Mar 2025 16:54:58 +0100 Subject: [PATCH] Update disk encryption guide: currently Fleet supports hosts with TPM chip (#27232) Related to: - #24907 --- articles/enforce-disk-encryption.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/articles/enforce-disk-encryption.md b/articles/enforce-disk-encryption.md index adfa013b32..d9c21feafd 100644 --- a/articles/enforce-disk-encryption.md +++ b/articles/enforce-disk-encryption.md @@ -8,7 +8,7 @@ In Fleet, you can enforce disk encryption for your macOS and Windows hosts, and When disk encryption is enforced, hosts' disk encryption keys will be stored in Fleet. -For macOS hosts that automatically enroll, disk encryption is enforced during Setup Assistant. For Windows, disk encryption is enforced on the C: volume (default system/OS drive). For Linux, encryption requires end user interaction. +For macOS hosts that automatically enroll, disk encryption is enforced during Setup Assistant. For Windows, currently disk encryption is enforced on the C: volume (default system/OS drive) only on hosts with a [TPM chip](https://support.microsoft.com/en-us/topic/what-s-a-trusted-platform-module-tpm-705f241d-025d-4470-80c5-4feeb24fa1ee). For Linux, encryption requires end user interaction. ## Enforce disk encryption