Command-line tools
24Administration manual 4603.7988.02 ─ 03
5 Command-line tools
Contents
● FDE initialization tool...............................................................................................24
● Boot manager tool (UEFI/GPT)...............................................................................27
5.1 FDE initialization tool
R&S Trusted Disk is delivered with an FDE initialization tool (fdeinit.exe), a com-
mand-line application to initialize the full-disk encryption.
The tool offers the following options:
●
Initialize the full-disk encryption with and without a smart card
●
Select multiple certificates for user and owners for the full-disk encryption
●
Show partitions of hard disk drives that can be encrypted
●
Define ranges of partitions for the full-disk encryption
●
Restore a previous system configuration
The tool is located in the R&S Trusted Disk installation folder, i.e.
C:\Program Files (x86)\Sirrix AG\TrustedDisk.
Contents
● List of parameters................................................................................................... 24
● Examples................................................................................................................ 25
5.1.1 List of parameters
You can execute fdeinit.exe with the following parameters:
Parameter Description
-h [--help] Shows help information
-v [--version] Shows version information
-u [--usercerts] Optional: Path to directory that contains user certificates
-o [--ownercerts] Path to directory that contains owner certificates
-n [--notoken] Activates the full-disk encryption without a smart card (not recommended)
without collecting entropy from the smart card
Note: This option is not approved for use at VS-NfD security level (see
Chapter 5.1.2.1, "Full-disk encryption without a smart card", on page 25).
-r [--restore] Optional: Restores a previous system configuration
Note: R&S Trusted Disk managed version only.
FDE initialization tool