I stupidly forget to write down the software name, though I am pretty sure it is the manufacturers own type of encryption application you get on a Sandisk or Kingston USB thumb drive.
I know it is not Bitlocker, however, that would make it a lot easier! The only wall I face is my colleague who has told the other school that is to find another solution, but as a pure technical exercise would be great as I am unfamiliar with GPO and its implementation, my first IT job, we have RM CC4 so we rarely poke around AD :-( .
I'm guessing allowing by drive path would be erroneous if they plug in another device, the device may change device assignment letter? So, doing by hash rule might be best?
Cheers.