diff --git a/windows/keep-secure/testing-scenarios-for-wip.md b/windows/keep-secure/testing-scenarios-for-wip.md index e74a83cfad..e7f6a935bb 100644 --- a/windows/keep-secure/testing-scenarios-for-wip.md +++ b/windows/keep-secure/testing-scenarios-for-wip.md @@ -22,6 +22,93 @@ We've come up with a list of suggested testing scenarios that you can use to tes ## Testing scenarios You can try any of the processes included in these scenarios, but you should focus on the ones that you might encounter in your organization. + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +3. +4. Make sure the file is decrypted, by: +o Right-clicking the file again, clicking Advanced from the General tab, and then clicking Details from the Compress or Encrypt attributes area. +The Details button should be unavailable. +For mobile: +1. Open the File Explorer app, browse to a file location, click the elipsis (...), and then click Select to mark at least one file as work-related. +2. Click the elipsis (...) again, click File ownership from the drop down menu, and then click Work. +Make sure the file is encrypted, by locating the Briefcase icon next to the file name. +3. Select the same file, click File ownership from the drop down menu, and then click Personal. +Make sure the file is decrypted and that you're no longer seeing the Briefcase icon next to file name. + + + + + + + + + + + + + + + + + + + |Scenario |Processes | |---------|----------| |Automatically encrypt files from enterprise apps |
  1. Start an unmodified (for example, WIP-unaware) line-of-business app that's on your allowed apps list and then create, edit, write, and save files.
  2. Make sure that all of the files you worked with from the WIP-unaware app are encrypted to your configured Enterprise Identity. In some cases, you might need to close the file and wait a few moments for it to be automatically encrypted.
  3. Open File Explorer and make sure your modified files are appearing with a **Lock** icon.

    **Note**
    Some file types, like .exe and .dll, along with some file paths, like `%windir%` and `%programfiles%`, are excluded from automatic encryption.

|
ScenarioProcesses
Encrypt and decrypt files using File Explorer.For desktop:

+

    +
  1. Open File Explorer, right-click a work document, and then click Work from the File Ownership menu.
  2. +
  3. Make sure the file is encrypted by right-clicking the file again, clicking Advanced from the General tab, and then clicking Details from the Compress or Encrypt attributes area.
    The file should show up under the heading, This enterprise domain can remove or revoke access: <your_enterprise_identity>. For example, contoso.com.
  4. +
  5. In File Explorer, right-click the same document, and then click Personal from the File Ownership menu.
  6. +
  7. Make sure the file is decrypted by right-clicking the file again, clicking Advanced from the General tab, and then verifying that the Details button is unavailable.
  8. +
+ For mobile:

+

    +
  1. Open the File Explorer app, browse to a file location, click the elipsis (...), and then click Select to mark at least one file as work-related.
  2. +
  3. Click the elipsis (...) again, click File ownership from the drop down menu, and then click Work.
  4. +
  5. Make sure the file is encrypted, by locating the Briefcase icon next to the file name.
  6. +
  7. Select the same file, click File ownership from the drop down menu, and then click Personal.
  8. +
  9. Make sure the file is decrypted and that you're no longer seeing the Briefcase icon next to file name.
  10. +
+
Create work documents in enterprise-allowed apps.For desktop:

+

    +
  1. Start an unenlightened but allowed app, such as a line-of-business app, and then create a new document, saving your changes.
  2. +
  3. Make sure the document is encrypted to your Enterprise Identity.
    This might take a few minutes and require you to close and re-open the file.

    Important
    Certain file types like .exe and .dll, along with certain file paths, such as %windir% and %programfiles% are excluded from automatic encryption.

    For more info about your Enterprise Identity and adding apps to your allowed apps list, see either [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) or [Create a Windows Information Protection (WIP) policy using Microsoft System Center Configuration Manager](create-wip-policy-using-sccm.md), based on your deployment system.

  4. +
+ For mobile:

+

    +
  1. +
  2. +
+