Questions tagged [bitlocker]

Microsoft Windows technology for full disk(volume) encryption.

BitLocker is a full disk encryption feature that adds a layer of security to storage devices to protect data and sensitive information from falling into the wrong hands. BitLocker is available in the Windows 7 Enterprise and Ultimate Operating Systems as well as Windows Server 2008 and 2008 R2 Operating Systems.

Features include:

  • Multi-factor authentication
  • Ability to encrypt Removable storage devices
  • AES 128-bit encryption
  • Group Policy and Active Directory integration
143 questions
0
votes
1 answer

Best method for enabling bitlocker via GPO/scripting

I'm working on getting bitlocker deployed across an organization and am getting hung up on how I'm expected to actually enable it. We're using on-site AD on Server2012 (will be moving to 2022 this summer but it is what it is for now) and our PCs are…
tsz
  • 229
  • 1
  • 2
  • 9
0
votes
1 answer

Can Bitlocker be applied to a shared volume of the Windows 2022 server? + SMB Encryption?

Our school has a remote file server (Windows 2022 virtual server on a colo) that provides network shared drives. We have both Windows and MacOS clients accessing it through SMB. Recently our IT Sub-committee recommended me enable Bitlocker on these…
RabbitSF
  • 33
  • 4
0
votes
1 answer

Bitlocker Encryption on RAID 0 kicks drive out of array half-way through

After hunting around for answers, I found some for the question: "Does Bitlocker support RAID on Windows". The answer seems to be that hardware RAID is supported. I've got a RAID 0 drive that I wanted to test this on, so I began the Bitlocker…
Thomas
  • 103
  • 2
0
votes
1 answer

Hyper-V, BitLocker usage both on the virtualized system and the drive of the host system

Using Hyper-V on a Windows 10 Pro computer, all Hyper-V VM related data is stored on a non-system secondary SSD: D:\. I know that you can use BitLocker in the VMs themselves, by enabling TPM support in the VM, and then enabling BitLocker encryption…
0
votes
2 answers

Using InTune for BitLocker enabling TPM+PIN+USB

I am tasked with enabling BitLocker via InTune and I am struggling to understand why the following settings are not taking effect on the endpoint. In the OS drive settings Compatible TPM Startup - Blocked Compatible TPM startup PIN -…
0
votes
1 answer

Can we prevent Windows from marking NVMe drives as removable?

I've noticed recently that when adding NVMe drives to Windows, it has a tendency to mark them as removable. I think this is more likely on "enterprise" NVMe SSDs, at least in my experience. For my own PC or less critical stuff, I'm not too bothered…
0
votes
1 answer

How do I disable Bitlocker Encryption settings using Intune?

We've activated Intune Bitlocker encryption and configured it needs a password to unlock. Since we don't want our users to change the Bitlocker pin, we want to disable the Settings below. Bitlocker Encryption settings For all non Germans, it's…
Leopepe
  • 13
  • 3
0
votes
1 answer

Bitlocker Auto-Unlock C drive with TPM

I wanted to enable auto-unlock on C drive with TPM. When I click on enable bitlocker on C Drive, it shows me only 2 options Insert a USB drive Enter a password I do not see any option which says Let bitlocker automatically unlock my drive. I…
0
votes
1 answer

Bitlocker Recovery Keys not showing in active directory suite

I recently asked this same question here about a month ago -> BitLocker Recovery Keys Not Showing in Active Directory But things have changed now and I am still getting the same results. I am going to go as into detail as I can for this post so I…
Anon
  • 13
  • 1
  • 2
  • 6
0
votes
2 answers

BitLocker Recovery Keys Not Showing in Active Directory

I have been working on this all last week and this week and have made no progress. I am working in active directory and group policy and need to store the bitlocker recovery keys in the bitlocker tab. I have followed all instructions online to get…
Anon
  • 13
  • 1
  • 2
  • 6
0
votes
1 answer

Bitlocker GPO automatic?

I was wondering if someone else has accomplished on what im trying to do i have GPO to automatic stores the keys in the AD when activated the bitlocker, but it seems that i have to do it manually, so i put a logon script bat with…
killmasta93
  • 21
  • 1
  • 5
0
votes
1 answer

What powershell module to import in order to run "Read-ADRecoveryInformation"?

I tried to run Read-ADRecoveryInformation but hit with this infamous error message. I tried the following cmdlets to look for the module but I could not find it. Get-command -Module TrustedPlatformModule Get-Command -Module Bitlocker Does anyone…
Blue Tongue
  • 147
  • 1
  • 12
0
votes
1 answer

win10 bitlocker enrypts partition after update

one of my clients has an laptop with Win 10. After the client run the latest Updates apparently BitLocker started to encrypt the files/Partition WITHOUT CONSENT and WITHOUT PROVIDING ANY RECOVERY KEYS. When the client starts the laptop, a blue…
user13226980
  • 57
  • 1
  • 5
0
votes
1 answer

When recovering a drive from within Microsoft BitLocker Administration and Monitoring (MBAM), why are you asked for a reason for recovering the drive?

When choosing to decrypt a drive via MBAM, I've noticed a combo box that asks the user to choose a reason for decryption - several possible options are listed including a lost PIN. What's the relevance of asking this question - are the decryption…
elliott94
  • 155
  • 4
0
votes
1 answer

Mapped Harddrive, Bitlocker?

All the available letters to use for harddrive, i used up. So for my new harddrive, i used mapping. So i have mapped my new harddrive to a folder. My question is, is it possible to still get bitlocker on that drive? If so , how? Or if not, is…
1 2 3
9
10