Link to home
Start Free TrialLog in
Avatar of Thomas N
Thomas NFlag for United States of America

asked on

Bitlocker question

So I dont need MBAM to deploy Bitlocker encryption on desktops, its just used for management. Correct?

So I have 2008 environment and Win 7 Enterprise machines. I just want to use GPO. I plan to implement by:

-Turn on TPM using script(Is this necessary)
-Startup Script to initiate initial encryption
-Use GPO policy to store encryption key in AD

Anything else im missing?

Im going to have more questions later but I will post as I go along.
Avatar of McKnife
McKnife
Flag of Germany image

Do you plan to set a PIN? Or without pin?
Expect your machine to run at least 20% slower, especially on a normal HD. Just a tad faster on an SSD.
Avatar of Thomas N

ASKER

Mcnife, not sure yet. We would have to meet on that. I would think so. We have over 3k machines.
ASKER CERTIFIED SOLUTION
Avatar of McKnife
McKnife
Flag of Germany image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I've requested that this question be deleted for the following reason:

found answer alone
sorry I did not find the answer