Hardware Encryption Capabilities for Apple Hardware
What
FromApple devices can report hardware encryption details through MDM. These values help confirm whether a securitydevice perspective,supports itblock-level isencryption, importantfile-level toencryption, understandor the encryption capabilities of devices. both.
When/Why
In FileWave 14.6.0 some reporting was added tocan report onApple's HardWareEncryptionCapsHardwareEncryptionCaps (value as part of the MDM security information returned by supported devices. Apple documents this value in the SecurityInfo response: https://developer.apple.com/documentation/devicemanagement/securityinforesponse/securityinfo?changes=latest_minorsecurityinfo ) as reported through Apple's MDM framework. .
How
- Hardware Encryption Capabilities
hasreportsbeensupportedadded as a fieldencryption for iOS 4+ and tvOS 6+devices to report the supported encryption.devices. - Passcode Present
hadhelpsitsdeterminedescriptionwhetherupdateddatato explain how it ties to Hardware Encryption Capabilities and alsoprotection isforactive on iOS 4+ and tvOS 6+.devices when read together with Hardware Encryption Capabilities. - Is Recovery Lock Enabled
wasreportsadded for macOS devices to reflect ifwhether Recovery Lock is enabled on AppleSiliconsilicon Macs running macOS 11.5+.
Digging Deeper
HardwareEncryptionCaps is an integer that indicates the underlying hardware encryption capabilities of the device, which is one of the following values:
-
1: Block-level encryption -
2: File-level encryption -
3: Both block-level and file-level encryption
This value is available in iOS 4 and later, and tvOS 6 and later.
For a device to have data protection, HardwareEncryptionCaps must be 3 and PasscodePresent must be true.