none
Run OS Upgrade task sequence on McAfee Drive Encryption encrypted drive? RRS feed

  • Question

  • An OS Refresh task sequence on an encrypted drive can be done per this document:

    https://kc.mcafee.com/resources/sites/MCAFEE/content/live/PRODUCT_DOCUMENTATION/24000/PD24855/en_US/de_7_1_OS_refresh_guide_UEFI.pdf

    However, I don't think McAfee support is yet familiar with the newer "Standard Client Upgrade" task sequence.

    We need to upgrade our 10240 systems to 10586 without going through time consuming decrypt and re-encrypt processes.

    Should changing the instructions in the document to simply inject the McAfee drivers into the base install.wim file and litetouch.wim files work and skip the steps on the last page (pasted below) since this is an in-place upgrade vs a "refresh?"

    Has anyone had this work successfully?

    • Mount EFI Partition
    This is a command line option provided by Microsoft.
    MountVol <Free Drive Letter:> /S (e.g. MountVol Y: /S)
    • Replace MSBoot File - Part 1
    This is a command line option that will recover McAfee Drive Encryptions EFI boot
    program.
    For 64‐bit systems use:
     xcopy y:\EFI\McAfee\Epe\MfeEEBoot.EFI y:\EFI\Boot\Bootx64.efi /y
    For 32‐bit systems use:
    xcopy y:\EFI\McAfee\Epe\MfeEEBoot.EFI y:\EFI\Boot\Bootia32.efi /y
    • Replace MSBoot File - Part 2
    This is a command line option that will recover McAfee Drive Encryptions EFI boot
    program.
    For 64‐bit systems use:
    xcopy y:\EFI\McAfee\Epe\MfeEEBoot.EFI y:\EFI\Microsoft\Boot\Bootmgfw.efi /y
    For 32‐bit systems use:
    xcopy y:\EFI\McAfee\Epe\MfeEEBoot.EFI y:\EFI\Microsoft\Boot\Bootmgfw.efi /y



    • Edited by MyGposts Friday, May 27, 2016 12:57 AM
    Friday, May 27, 2016 12:53 AM