Enable Bitlocker without TPM AND using a startup password
Hi!I'm trying to Bitlocker a laptop which has a TPM v1.1 chip installed AND I'm trying to have it so that it doesn't need to use the recovery key on the USB drive to boot.I've got it to the point where it will boot and ask for the recovery key and if you type it in (it's reeeeally long) it will boot.What I want to know is, can I get it to boot using a password or PIN which I have set?
October 21st, 2009 12:35pm

Hi, I notice that your TPM Chip version is 1.1. Please check the article: BitLocker Drive Encryption Overview and notice the following details. For BitLocker to use the system integrity check provided by a TPM, the computer must have a TPM version 1.2. If your computer does not have a TPM, enabling BitLocker will require you to save a startup key on a removable device such as a USB flash drive. Hope it helps! Arthur Li - MSFT
Free Windows Admin Tool Kit Click here and download it now
October 22nd, 2009 2:25am

Thanks for info. I understand that when you enable Bitlocker that you require the USB drive to save the key, but is there anyway of not using the USB drive at startup? The laptops we're using don't seem to want to boot from USB at startup and therefore this causes a problem. The laptops are Toshiba Portege S100. They have the most up to date bios installed also. So, what I'm after is the ability to use Bitlocker but choose the startup PIN myself.
October 22nd, 2009 5:18am

Hi, In another word, if your TPM version is 1.1, the BIOS must has the ability to read from a USB flash drive in the boot environment. It means that you have to use the USB flash drive to enable BitLocker on the system drive. Only the TPM version 1.2 has the ability to start the encrypted system without the USB flash drive. You can find the answer on the following link. http://technet.microsoft.com/en-us/library/ee449438(WS.10).aspx#BKMK_NoTPM For more information about BitLocker in Windows 7, you may refer to the following link. http://technet.microsoft.com/en-us/library/dd835565(WS.10).aspx Good luck! Arthur Li - MSFT
Free Windows Admin Tool Kit Click here and download it now
October 23rd, 2009 12:55am

Hi, In another word, if your TPM version is 1.1, the BIOS must has the ability to read from a USB flash drive in the boot environment. It means that you have to use the USB flash drive to enable BitLocker on the system drive. Only the TPM version 1.2 has the ability to start the encrypted system without the USB flash drive. You can find the answer on the following link. http://technet.microsoft.com/en-us/library/ee449438(WS.10).aspx#BKMK_NoTPM For more information about BitLocker in Windows 7, you may refer to the following link. http://technet.microsoft.com/en-us/library/dd835565(WS.10).aspx Good luck! Arthur Li - MSFT how to detect my pc hv tpm1.2 or not?if not,how to get it? tq
February 8th, 2012 12:32pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics