Link to home
Start Free TrialLog in
Avatar of usama khalil
usama khalil

asked on

Bitlocker : asking the key every reboot

Dear expert support

We have issue and required your help : we are implement Bitlocker feature with the users ( different PC models )  90 % is working fine but the issue with 10 % is asking the key every reboot.

Note: this issue dont related to computer model , generally with different models

Regards
Avatar of Sajid Shaik M
Sajid Shaik M
Flag of Saudi Arabia image

Greetings,

Similar issues found on different vendors with different solutions please check the following

Dell System

How to set the BIOS to prevent BitLocker recovery key prompts.
To resolve the issue please follow the steps below.

Enter the BIOS (F2 at boot or F12 one time boot menu at boot)
Go to System Configuration, then USB Configuration, and uncheck the following.
Disable USB Type-C or Thunderbolt 3 Boot support
Disable USB Type-C or Thunderbolt 3 (and PCIe behind TBT) Pre-boot
Set POST Behavior -> Fastboot -> Thorough
Upon doing this the system should not prompt for the BitLocker key on every boot.

Note: This is a solution for USB Type-C / Thunderbolt 3 configurations causing a BitLocker recovery prompt at boot. There are other reasons for recovery key prompts that this procedure may not resolve.

This solution should work in UEFI mode.

Systems using legacy mode can use the same steps provided in SLN305408 - BitLocker Fails to turn on or prompts for the Recovery Key after every reboot with Windows 10, UEFI, and the TPM 1.2 Firmware

Lenovo

upgrade the BIOS

& check the following

Open the BitLocker manager tool by either
Typing BitLocker into the start menu seach box and selecting the first result
or in the control panel, System & Security > BitLocker
Click "Suspend Protection" on your system disk
Select yes to the prompt that appears
Click "Resume Protection"
Now BitLocker will remember your updated system configuration.


HP

use UEFI with TPM 2.0 then Bitlocker is working just fine.


all the best
Avatar of usama khalil
usama khalil

ASKER

Dear Sajid

Thanks for your support

I tried with your solution but Unfortunately it is dont working with us

when I reached in System Configuration, I can see below options, please advice which one need disable



Enable boot support
Enable rear dual usb ports
Enable front usb ports
Enable real Quad USB port
Usama, this is normally expected to be seen under these conditions:
- you have a TPM module running in TPM 2.0 mode
- you have installed windows as non-uefi (disk is MBR formatted)

To verify this, open an elevated command prompt and launch the commands
diskpart
list disk

Open in new window

In the output, see if there's an asterisk ("*") below GPT. If there is none, you have found the reason.

To solve that on windows 10 (1703 and higher), you can convert your MBR installation to GPT using the command line tool mbr2gpt.exe
Afterwards, the recovery key will no longer be requested.

Tell me, if you need more help.
Dear

attached, please check to us, i do as your advice with same issue

Regards
500.PNG
Dear all

Any help ?

Regards
ASKER CERTIFIED SOLUTION
Avatar of McKnife
McKnife
Flag of Germany image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial