We have issue and required your help : we are implement Bitlocker feature with the users ( different PC models ) 90 % is working fine but the issue with 10 % is asking the key every reboot.
Note: this issue dont related to computer model , generally with different models
Regards
EncryptionPC
Last Comment
McKnife
8/22/2022 - Mon
Sajid Shaik M
Greetings,
Similar issues found on different vendors with different solutions please check the following
Dell System
How to set the BIOS to prevent BitLocker recovery key prompts.
To resolve the issue please follow the steps below.
Enter the BIOS (F2 at boot or F12 one time boot menu at boot)
Go to System Configuration, then USB Configuration, and uncheck the following.
Disable USB Type-C or Thunderbolt 3 Boot support
Disable USB Type-C or Thunderbolt 3 (and PCIe behind TBT) Pre-boot
Set POST Behavior -> Fastboot -> Thorough
Upon doing this the system should not prompt for the BitLocker key on every boot.
Note: This is a solution for USB Type-C / Thunderbolt 3 configurations causing a BitLocker recovery prompt at boot. There are other reasons for recovery key prompts that this procedure may not resolve.
This solution should work in UEFI mode.
Systems using legacy mode can use the same steps provided in SLN305408 - BitLocker Fails to turn on or prompts for the Recovery Key after every reboot with Windows 10, UEFI, and the TPM 1.2 Firmware
Lenovo
upgrade the BIOS
& check the following
Open the BitLocker manager tool by either
Typing BitLocker into the start menu seach box and selecting the first result
or in the control panel, System & Security > BitLocker
Click "Suspend Protection" on your system disk
Select yes to the prompt that appears
Click "Resume Protection"
Now BitLocker will remember your updated system configuration.
HP
use UEFI with TPM 2.0 then Bitlocker is working just fine.
all the best
usama khalil
ASKER
Dear Sajid
Thanks for your support
I tried with your solution but Unfortunately it is dont working with us
when I reached in System Configuration, I can see below options, please advice which one need disable
Enable boot support
Enable rear dual usb ports
Enable front usb ports
Enable real Quad USB port
McKnife
Usama, this is normally expected to be seen under these conditions:
- you have a TPM module running in TPM 2.0 mode
- you have installed windows as non-uefi (disk is MBR formatted)
To verify this, open an elevated command prompt and launch the commands
In the output, see if there's an asterisk ("*") below GPT. If there is none, you have found the reason.
To solve that on windows 10 (1703 and higher), you can convert your MBR installation to GPT using the command line tool mbr2gpt.exe
Afterwards, the recovery key will no longer be requested.
Similar issues found on different vendors with different solutions please check the following
Dell System
How to set the BIOS to prevent BitLocker recovery key prompts.
To resolve the issue please follow the steps below.
Enter the BIOS (F2 at boot or F12 one time boot menu at boot)
Go to System Configuration, then USB Configuration, and uncheck the following.
Disable USB Type-C or Thunderbolt 3 Boot support
Disable USB Type-C or Thunderbolt 3 (and PCIe behind TBT) Pre-boot
Set POST Behavior -> Fastboot -> Thorough
Upon doing this the system should not prompt for the BitLocker key on every boot.
Note: This is a solution for USB Type-C / Thunderbolt 3 configurations causing a BitLocker recovery prompt at boot. There are other reasons for recovery key prompts that this procedure may not resolve.
This solution should work in UEFI mode.
Systems using legacy mode can use the same steps provided in SLN305408 - BitLocker Fails to turn on or prompts for the Recovery Key after every reboot with Windows 10, UEFI, and the TPM 1.2 Firmware
Lenovo
upgrade the BIOS
& check the following
Open the BitLocker manager tool by either
Typing BitLocker into the start menu seach box and selecting the first result
or in the control panel, System & Security > BitLocker
Click "Suspend Protection" on your system disk
Select yes to the prompt that appears
Click "Resume Protection"
Now BitLocker will remember your updated system configuration.
HP
use UEFI with TPM 2.0 then Bitlocker is working just fine.
all the best