Forum Discussion

shocko's avatar
shocko
Steel Contributor
Aug 31, 2023

Autopilot User-driven mode with Hybrid Join and Silently Enabling Bitlocker

I'm building Windows 10 22H2 Enterprise machines using user-driven Autopilot and AzureAD Hyrid join. We require hybrid join for a very specific reason so AzureAD join is not an option. We also wish to enable Bitlocker with the recovery keys stored in AzureAD. 

In this scenario is silent enablement of Bitlocker during Autopilot possible/supported? 

  • Suresh_M340's avatar
    Suresh_M340
    Copper Contributor
    I think we can have the powershell script to encrypt the bitlocker for hybrid intune enrolled device
    • shocko's avatar
      shocko
      Steel Contributor
      When though? I'm asking about dueing Autopilot for HAADJ (which requires line of sight to a DC).
    • shocko's avatar
      shocko
      Steel Contributor

      Thanks for the info. I'm not sure I follow the thread though. We don't use GPO for our Intune enrolled machines. Is it possible to enable Bitlocker silently during user-driven autopilot with the recovery key stored in AzureAD?

      • JeroenBurgerhout's avatar
        JeroenBurgerhout
        Iron Contributor
        For HAADJ devices you need to have a GPO with the settings that I mention in the blog post. Otherwise.. it will not work. Trust me.

Resources