Policy to auto-enable Bitlocker

This forum is used to support the BitLocker for Automate plugin. You will find documentation on the plugin as well as an area to post issues and requests. Please post
Post Reply
md202
Posts: 5
Joined: Thu Aug 29, 2019 4:23 pm
4

Policy to auto-enable Bitlocker

Post by md202 »

Hello,

Is there a feature available in the Plugin's configuration for managing and enabling the Bitlocker encryption automatically? For example, have a policy in place to automatically enable Bitlocker with two protectors (Tpm + RecoverPassword) for any (1) new computer enrolled in Automate or (2) computer enrolled in Labtech but Offline.

Thank you.

User avatar
Cubert
Posts: 2457
Joined: Tue Dec 29, 2015 7:57 pm
8
Contact:

Re: Policy to auto-enable Bitlocker

Post by Cubert »

No not currently, I have discussed the possibility of creating agent policies that would define what agents should receive what protectors but we had pushback that any type of failure in the process could BRICK the PC and with many MSP managers not knowing BitLocker thoroughly, a misconfiguration could spell disaster.

Policy automation requires a set of pre checks to make it safe for automation. You would need to separate Laptops from Desktops and Servers. You would need to Identify agents validity for TPM, test drives for encryption to pre exist, possibly run disk scans for errors. A lot of things would need to happen to make for successful automations.

Because of these 2 main factors (Safety and Complexity) we opted not to put policy management in place.

Post Reply

Return to “BitLocker for Automate”