Page 1 of 1

Policy to auto-enable Bitlocker

Posted: Wed Mar 27, 2024 8:47 pm
by md202
Hello,

Is there a feature available in the Plugin's configuration for managing and enabling the Bitlocker encryption automatically? For example, have a policy in place to automatically enable Bitlocker with two protectors (Tpm + RecoverPassword) for any (1) new computer enrolled in Automate or (2) computer enrolled in Labtech but Offline.

Thank you.

Re: Policy to auto-enable Bitlocker

Posted: Fri Mar 29, 2024 1:45 pm
by Cubert
No not currently, I have discussed the possibility of creating agent policies that would define what agents should receive what protectors but we had pushback that any type of failure in the process could BRICK the PC and with many MSP managers not knowing BitLocker thoroughly, a misconfiguration could spell disaster.

Policy automation requires a set of pre checks to make it safe for automation. You would need to separate Laptops from Desktops and Servers. You would need to Identify agents validity for TPM, test drives for encryption to pre exist, possibly run disk scans for errors. A lot of things would need to happen to make for successful automations.

Because of these 2 main factors (Safety and Complexity) we opted not to put policy management in place.