You will need this information in a later step. If you see ”CoreStorage Logical Volume Group” instead of ”APFS Volume” or ”Mac OS Extended,” the format is Mac OS Extended. If you don't know the name (such as Macintosh HD) and format of the startup disk, open Disk Utility from the macOS Utilities window, then check the information Disk Utility shows for that volume on the right.On the client Mac, start up from macOS Recovery by holding Command-R during startup.Next make a copy of your FileVaultMaster.keychain file.Two 'File Vault Recovery Key' items should appear, one that is a private key and another that is a certificate. Once a keychain is created, drag and drop the FileVaultMaster.p12 file into the keychain. Create a new Keychain named FileVaultMaster (Keychain Access > File > New Keychain).Open up Keychain Access on an OS X machine (Applications > Utilities > Keychain Access).This file will be called FileVaultMaster.p12. Find the IRK that was originally downloaded or download it from Dashboard.Again this key is used to unlock a device encrypted by Meraki via FileVault. Using Dashboard to Unlock a User's Startup DiskĪside from downloading the recovery certificate, Meraki also stores the Institutional Recovery Key on the Organization > MDM page of Dashboard.