Instructor Blogs

AmeriTeach

« Offline WSUS Server | Main | Install WindowsRE to the hard drive »
Wednesday
May232007

BitLocker recovery key - Active Directory

If you need to recover a computer that has been encrypted with BitLocker, you are required to enter a recovery key. This key is created when you first enable BitLocker. The following are options for storing this recovery key:

  • Save the key to file
  • Store the key on a USB drive
  • Print the key
  • Save the key to Active Directory

To use the Active Directory option, you must be running Windows Server 2003 SP1 or higher on your domain controllers. The reason for this is that storing the BitLocker recovery keys in Active Directory requires Schema extensions. The preparation steps can be found here.

 

This information pertains to the following courses:

Course 5118: Maintaining and Troubleshooting Windows Vista Computers

PrintView Printer Friendly Version

Reader Comments (6)

Using BitLocker to encrypt your system partition is a very good option to keep the computer and the data on it secure. Starting with Vista SP1 you will be able to encrypt not only the system partition but all the other partitions as well, offering even better security. When you encrypt a partition with BitLocker a recovery key is automatically generated so that you can recover the data on the computer when necessary. By default you have the choice of printing the recovery key or saving it to a USB stick or a network share.
November 13, 2008 | Unregistered Commenteralex
i've forgotten my recovery key for bitlocker. i am not able to access my pen drive now. could you please tell me a solution
November 24, 2009 | Unregistered CommenterSalim
excuse me sir... i locked my pen drive using bit locker.. it gave me a recovery key to use if i forgot my password.. i stored it in my documents.. then i disabled the password.. after some days i formatted my system and lost the recovery key.. now i am not able to access my pen drive.. its prompting me for recovery key.. but i dont have it.. i dont know what to do now.. could you please give me some information regarding this
November 24, 2009 | Unregistered CommenterSalim
Salim, you're out of luck.

the reason it wants to save a recovery key is to recover the key. no reovery key = no recovery.
December 17, 2009 | Unregistered CommenterMike
no recovery key = no recovery. ?
it's big trouble
Salim : we're bitlocker victim.
April 3, 2010 | Unregistered CommenterJu
i also locked my hard drive using bit locker.. it did not give me a recovery key but i do know my password but it does not prompt me to use it? after some days i formatted my system and lost the recovery key.. now i am not able to access my hard drive.. its prompting me for recovery key.. but i dont have it.. i dont know what to do now.. could you please give me some information regarding this.
Kind Regards
Nick Danks
nick@isimo.co.uk
June 4, 2010 | Unregistered CommenterNick Danks

PostPost a New Comment

Enter your information below to add a new comment.
Author Email (optional):
Author URL (optional):
Post:
 
All HTML will be escaped. Hyperlinks will be created for URLs automatically.