MBAM Recovery - Replaced Mother Board
I've recently setup MBAM in my lab and and running through the different recovery scenarios we might encounter. In the Documentation for MBAM, I am applying the methods for a moved drive recovery to a computer that has had its motherboard replaced. http://onlinehelp.microsoft.com/mdop/hh285661.aspx The documentation indicates that you need to decrypt the drive before it will work in a moved drive scenario. I'm finding this to not be the case and I'm wondering if there is a drawback to what I am doing. My steps: Remove BitLockered/MBAM'd HD1 from Computer1 and put into Computer2. Boot to the BIOS, enable and activate the TPM on Computer2. Boot Computer2 which comes up and asks for the PIN. Since this TPM has no PIN, I generate a recovery key from the MBAM console and type it. This now lets me into Windows 7 on Computer2 using HD1. Now that I am into Windows 7 I go and Initialiaze the TPM, set a new TPM password. The important piece I have found is that the user needs to go and set a PIN, or it will boot back to recovery mode. Following these steps I'm able to get back into the machine and have MBAM show the system as Compliant, the BitLocker Drive Encryption shows as on, and I appear to have access to all of my data. Is this right, or do I really need to decrypt it for some reason? Thanks!
August 4th, 2012 8:42am

It depends on what GPO settings you set in MBAM. There's a variety of options. Did you set TPM and PIN? or what did you set. I would suspect the behavior of it going to recovery mode is the expected behavior. It's possible it only requires the PIN if you set TPM and PIN and there's an issue or TPM is notices as off on the machine. I suggest you review the policies set for Fixed Data Drive and OS Drive PLEASE MARK ANY ANSWERS TO HELP OTHERS Blog: rorymon.com Twitter: @Rorymon
Free Windows Admin Tool Kit Click here and download it now
August 5th, 2012 4:30pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics