Hi all.
I am currently having some problems configuring a forced Bitlocker USB encryption policy. On the GPO, I have set 'Deny write access to removable drives not protected by BitLocker' to enabled (computer side) which is working correctly, and does require the user to encrypt their drive before using it. However, I am looking for a way to set this policy so that staff are required to encrypt their memory sticks, but students do not need to and can use them freely. I can't see anything on the user side of the policy, does anyone know of a way to do this or has set something similar before?
Thanks in advance!