Jump to content

BitLocker without TPM - domain joined devices


Recommended Posts

Posted

Not that I've found, using vanilla deployment with group policy.

 

Without a TPM, you need to either stick a pin code or password in there, I found no way to automate that.

Posted

You can still back the recovery key for devices without TPM, just enable the backup to Active Directory options in group policy.

 

You will still need to manually run through the BitLocker encryption wizard though.

Posted
everything that works with a tpm works without gpo wise so backing up keys is the same as if it had a tpm. to the best of my knowledge there is no gpo way of automatically actually encrypting the disk you could probably use a script to do it or (for pcs with tpm) make it part of your mdt setup

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...