
in these type of departments all the computer are on all the time anyways
Completely agreed - the only threat that full-disk encryption really prevents against is someone actually walking out of the data center with the disk. Nice and all, but not a full solution.
The company I work for (www.vormetric.com) has a policy-based file encryption product, so you can say things like "under this directory only user foo can read and write to files, and use this particular encryption key". So other users can't get there, and even if they could it's encrypted. There's no performance hit for everyone else, and it's transparent to applications. You might want to check it out.
-Mike
Almost anything derogatory you could say about today's software design would be accurate. -- K.E. Iverson