Unable to set up BitLocker on the device using BitLocker policySolved

Participant
Discussion
2 years ago

Hey everyone, I have applied a BitLocker policy on my VM devices as i want my users to be able to log in to their devices without typing in a bitLocker PIN (automatically). Also, TPM is enabled for all the devices. But I am facing this issue:

Error popup during BitLocker encryption on device end

Does anybody have an idea what’s going on?

Replies (5)

Marked SolutionPending Review
Participant
2 years ago
Marked SolutionPending Review

Hey!! This error comes up when you modify BitLocker settings in the Registry Editor or Local Group Policy Editor. Maybe the configurations you have used in the Bitlocker policy aren’t correct. Can you share the configurations have you used.

Marked SolutionPending Review
Participant
2 years ago
Marked SolutionPending Review

@Dakarai
Here you go:

Settings configured in BitLocker policy

Also, I had another query is there any option to allow just Let bitlocker automatically unlock my drive when enabling BitLocker from the device end?

Marked SolutionPending Review
Participant
2 years ago
Marked SolutionPending Review

Most settings set to optional in BitLocker policy

Alternate set of configurations in BitLocker policy

Try one of these configurations based on your use case and see if it works.

Marked SolutionPending Review
Participant
2 years ago
Marked SolutionPending Review

Awesome! It worked, great thanks.

Marked SolutionPending Review
Hexnode Expert
2 years ago
Marked SolutionPending Review

Hey @Tom, thanks for reaching out to us.
Thank you @Dakarai! As @Dakarai pointed out it’s due to the incorrect configurations provided in the BitLocker policy.

Also, follow the steps below to enable auto-unlock for BitLocker via the Control Panel.

  1. Open Control Panel. 
  2. Choose System and Security, and then click BitLocker Drive Encryption. 
  3. Search for the drive you want to set auto-unlock for. Use the BitLocker password to unlock the drive if it is locked. 
  4. Then, click Turn on auto-unlock.

But make sure that these drives don’t host an operating system installed on them.

Please feel free to reach out to us in case of further queries.

Regards,
Carl Hughes
Hexnode UEM