Forum Discussion

JimmyWork's avatar
JimmyWork
Iron Contributor
Jun 03, 2022
Solved

Bitlocker recovery keys not syncing on OnPrem devices

Steps U do.   Move devices in SCCM into a collection where Intune controls everything, devices are on-prem. All policy's work, but the Bitlocker recovery keys does not sync from AD to Intune.   ...
  • Moe_Kinani's avatar
    Moe_Kinani
    Jun 04, 2022

    Hi JimmyWork 

     

    Do you have on premise GPO? If you do, bear in mind it will always win, so make sure its disabled on devices that scoped in Intune policy.
    I would also use Intune Endpoint Protection Template (like you mentioned above) and make sure the setting you attached is selected and also the one I attached.

    I have used the script below last year to migrate the keys into AAD, hope it helps as well

    https://msendpointmgr.com/2021/01/12/migrate-bitlocker-to-azure-ad/

     

     

    Moe

Resources