Intune - Encrypt drive by Bitlocker - Error Failed to enable Silent Encryption

Copper Contributor

Hello!

We trying to encrypt all disks using Bitlocker but we have the following error in the event viewer :

Failed to enable Silent Encryption.

Error: Group policy prevents you from backing up your recovery password to Active Directory for this drive type. For more info, contact your system administrator..

 

Computers are hybrid AAD and AD.

 

I had already created a GPO with the following summary:

JulianAF2380_1-1693292842534.png

 

AAD Bitlocker configuration

JulianAF2380_0-1693292806160.png

 

Thank you for your help... 

 

 

 

6 Replies
Hi,

Check out my blog post about this issue: https://www.burgerhout.org/the-bitlocker-haadj-nightmare/.
It will probably help you.
Hello Jeroen,

effectively, i already did what you propose in your blog. I just ommit for "Remove Data Drives" but i think this will not have any affect..

Thank yo u

Hi@Jeroen Burgerhout ,

 

I don't understand i'm still having an error 65000 in intune but all seems ok from computer and the bitlocker key is saved in computer in azure

JulianAF2380_1-1693553859719.png

 

JulianAF2380_0-1693553747512.png

JulianAF2380_2-1693553903703.png

JulianAF2380_3-1693553923140.png

 

What's happening? 

 

Thank you for your help

 

 

The error 65000 is a general error. It will go a way at some point. If it is working, than it is fine for now.

65000 errors are reporting bug related and can be ignored. It's annoying but harmless @JulianAF2380 

Bug bug bug, it's the real name of Azure ?