Dear Support Forum,
We would like to get a final clarification to understand the limitations and or pros/cons to deleting duplicated objects from ePO resulting from reimaging, or McAfee Agent force installs or uninstall+reinstall, for machines which are running both Drive Encryption (MDE) 7.x and File & Removable Media Protection (FRP) 5.x.
Our global policies enforce full-disk encryption and removable media encryption. In the past we were advised that we could not delete machines because we would then lose the ability to perform administrative recoveries and export recovery keys for MDE. I've unofficially heard that this has changed or is incorrect. We are also not sure how this would affect recoveries for encrypted removable media.
Therefore, we would like the following questions answered:
- If a duplicated machine is deleted from ePO, can an ePO admin still perform an MDE Administrative Recovery?
- If a duplicated machine is deleted from ePO, can an ePO admin still perform an MDE Recovery Key (XML) Export?
- If a duplicated machine is deleted from ePO, can an ePO admin still perform an FRP Recovery?