Forum Discussion
Ben Curran
Mar 16, 2020Brass Contributor
Intune Local GPO Change for Bitlocker Pre-boot Kyeboard Bypass
Hi, I have been testing Bitlocker on my Surface Pro and ran into a small problem. I have configured to to boot with a PIN but it wont enable due to no pre-boot keyboard being avaialble. BitLo...
Moe_Kinani
Mar 18, 2020Bronze Contributor
Hi Ben,
Have you checked Endpoint Protection Config Profile->Windows Encryption or Security Baseline ->Bitlocker in Intune? It should have all the setting you looking for.
Have you checked Endpoint Protection Config Profile->Windows Encryption or Security Baseline ->Bitlocker in Intune? It should have all the setting you looking for.
- Per Oddvar SkåreJun 02, 2020Copper Contributor
I'm having the same issue with a new MS Surface Laptop 3.
I've configured require TPM and PIN through Intune policy and profile.
The error states clearly that PIN is not possible because the Surface device has no boot-keyboard. I swear that this device has a none detatchable keyboard! 😕
The same policy and profile works fine on multiple Lenovo devices. Moe_Kinani
- Ben CurranMar 18, 2020Brass Contributor
Moe_KinaniHi, yes I have checked all Bitlocker settings in Intune but unfortunately am unable to find this GPO.
If its not avaialble in Bitlocker, or Administrative Templates, is there a way to deploy a custom Intune policy which targets the local GPO?