Solved

Pitfalls by using bitlocker on an O/S

Posted on 2011-09-16
2
518 Views
Last Modified: 2012-06-27
Has anyone run across any issues/pitfalls using bitlocker on the O/S.  Data corruption/blue screen/compatibility issues/etc....
I know there is no issues on peripherals but don't think it would be so faultless on the actual o/s
0
Comment
Question by:nomaadic
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 64

Accepted Solution

by:
btan earned 500 total points
ID: 36553599
Some that I can think off
- Key mgmt for recovery of HDD in the event that typically will be connected to backend AD. If the recovery key is lost and user forget or loses his USB key, then the recovery would not be trivial
- If Bitlocker is tied to the TPM, it is binded to machine, so cloning of machine to machine will not be possible to ease mass deployment
- Even during migration to new machine or OS, you may have to temporary disarm Bitlocker which it create a temp key w/o needing user interaction. This may have a short window of exposure
- You cannot use Group Policy to enforce BitLocker PIN rules.
- BitLocker currently does not support smart cards for pre-boot authentication.
- Support for computers that use Extended Firmware Interface (EFI)-based system firmware is planned for Windows Server 2008, but it is not currently supported in Windows Vista.
- Bitlocker creates a  system volume partition (~1.5 Gbytes, on top of another for the OS) to store its startup codes and if machine with recovery partition (for auto revert), have to make sure it is compatible. Ideally there should not be hosting those partition to avoid conflict in bootup if any.
- Bitlocker required  BIOS setting to start up first from the hard drive, not the USB or CD drives.


This FAQ can be useful @ http://technet.microsoft.com/en-us/library/cc766200(WS.10).aspx 
0
 

Author Closing Comment

by:nomaadic
ID: 36563006
Thanks
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Windows 7 does not have the best desktop search built in. This is something Windows 7 users have struggled with. You type something in, and your search results don’t always match what you are looking for, or it doesn’t actually work at all. There ar…
Security measures require Windows be logged in using Standard User login (not Administrator).  Yet, sometimes an application has to be run “As Administrator” from a Standard User login.  This paper describes how to create a shortcut icon to launch a…
This video Micro Tutorial explains how to clone a hard drive using a commercial software product for Windows systems called Casper from Future Systems Solutions (FSS). Cloning makes an exact, complete copy of one hard disk drive (HDD) onto another d…
In this video, we discuss why the need for additional vertical screen space has become more important in recent years, namely, due to the transition in the marketplace of 4x3 computer screens to 16x9 and 16x10 screens (so-called widescreen format). …

691 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question