Wednesday
May232007
BitLocker recovery key - Active Directory
Tweet
Wednesday, May 23, 2007 at 03:16PM
Wednesday, May 23, 2007 at 03:16PM If you need to recover a computer that has been encrypted with BitLocker, you are required to enter a recovery key. This key is created when you first enable BitLocker. The following are options for storing this recovery key:
- Save the key to file
- Store the key on a USB drive
- Print the key
- Save the key to Active Directory
To use the Active Directory option, you must be running Windows Server 2003 SP1 or higher on your domain controllers. The reason for this is that storing the BitLocker recovery keys in Active Directory requires Schema extensions. The preparation steps can be found here.
This information pertains to the following courses:
Course 5118: Maintaining and Troubleshooting Windows Vista Computers


Reader Comments (6)
the reason it wants to save a recovery key is to recover the key. no reovery key = no recovery.
it's big trouble
Salim : we're bitlocker victim.
Kind Regards
Nick Danks
nick@isimo.co.uk