Forum Discussion
Endpoint security - Device encryption policy shows error
- Aug 13, 2021
Hi Marc,
Check if you can re-image the Windows 10 client to be sure.
Below the settings that difference from yours:
- BitLocker - Base Settings
Require storage cards to be encrypted (mobile only): Yes
Configure client-driven recovery password rotation: Azure AD-Joined devices only
BitLocker - Fixed Drive Settings
Enable BitLocker after recovery information to store: Not configured
BitLocker - OS Drive Settings
Compatible TPM startup : Allowed
Compatible TPM startup PIN: Blocked
Compatible TPM startup key: Blocked
Compatible TPM startup key and PIN: Blocked
Enable BitLocker after recovery information to store: Not configured
Block the use of certificate-based data recovery agent (DRA): Yes
BitLocker - Removable Drive Settings
Block write access to removable data-drives not protected by BitLocker: Yes
Hope this helps, and keep me posted.
Regards, Bilal
Hi Marc,
Check if you can re-image the Windows 10 client to be sure.
Below the settings that difference from yours:
- BitLocker - Base Settings
Require storage cards to be encrypted (mobile only): Yes
Configure client-driven recovery password rotation: Azure AD-Joined devices only
BitLocker - Fixed Drive Settings
Enable BitLocker after recovery information to store: Not configured
BitLocker - OS Drive Settings
Compatible TPM startup : Allowed
Compatible TPM startup PIN: Blocked
Compatible TPM startup key: Blocked
Compatible TPM startup key and PIN: Blocked
Enable BitLocker after recovery information to store: Not configured
Block the use of certificate-based data recovery agent (DRA): Yes
BitLocker - Removable Drive Settings
Block write access to removable data-drives not protected by BitLocker: Yes
Hope this helps, and keep me posted.
Regards, Bilal
Hi Bilal
many thanks for your details, i did a Fresh Start again and see now, that the policy has been successfully applied :-). The status in the cmd is a little slow still showing "Encryption in Progress" but i'm optimistic now, that this is better.
I will play around a little more after i see that everything is okey now to find the setting, which was causing that issue.
Thanks already for your help, much appreciated!
Best regards,
Marc