Before proceeding, make sure to configure smart card authentication. For information about configuring smart card authentication, see Configuring Smart Card Authentication in PolicyServer MMC.
Smart card certificates are associated with the user account and the user's assigned group. Once registered, the user can use smart card authentication from any Endpoint Encryption device in that group. Users are free to use any Endpoint Encryption device in their group and do not need to ask for another one-time password.
After assigning a smart card PIN to the user, the user can log on the Full Disk Encryption agent directly with the smart card from the smart card authentication screen in the Full Disk Encryption preboot.
The smart card is registered to all users in the same group as the selected user.