Bitlocker to Go Recovery informations
Dear forum members, I took a look at Bitlocker to Go's group policy and there is a "Choose how Bitlocker-protected removable drives can be recovered" setting. Under "Configure user storage of Bitlocker recovery information" I can see two terms: recovery key and recovery password. What is the exact difference between them? Because as I know, recovery password is a 48 digit password which should be entered manually during the recovery proccess. But then what is the recovery key? And when I force to use the recovery key instead of the recovery password, the option for saving or printing it is greyed out (in the bitlocker encrypting wizard) and I can't see any option to enable that. I just have the option to save that to an other USB drive. What is the reason of this? Did I misconfigure something? Thank you for your help, Chris
April 12th, 2010 11:15pm

Hi, Based on the Help information in the Group Policy, we can find the following information: “This policy setting allows you to control whether the BitLocker Drive Encryption setup wizard can display and specify BitLocker recovery options. This policy is only applicable to computers running Windows Server 2008 or Windows Vista. This policy setting is applied when you turn on BitLocker. Two recovery options can be used to unlock BitLocker-encrypted data in the absence of the required startup key information. The user either can type a 48-digit numerical recovery password or insert a USB flash drive containing a 256-bit recovery key. If you enable this policy setting, you can configure the options that the setup wizard displays to users for recovering BitLocker encrypted data. Saving to a USB flash drive will store the 48-digit recovery password as a text file and the 256-bit recovery key as a hidden file. Saving to a folder will store the 48-digit recovery password as a text file. Printing will send the 48-digit recovery password to the default printer. For example, not allowing the 48-digit recovery password will prevent users from being able to print or save recovery information to a folder. If you disable or do not configure this policy setting, the BitLocker setup wizard will present users with ways to store recovery options.” When trying to recover BitLocker, you should still use the Recovery Password instead of the Recovery key. Thanks,Novak
Free Windows Admin Tool Kit Click here and download it now
April 16th, 2010 10:52am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics