Skip to main content

Preparation

Before you can target BitLocker, you must:

  1. Turn on and initialize the TPM (Trusted Platform Module) and enable BitLocker

  2. Enable BitLocker and TPM to backup to Active Directory.

  3. Add a recovery password.

    This should be backed up to Active Directory, and will the numeric string that is entered to get into a machine when a user is locked out.

  4. Add a PIN to allow the administrative user to start the machine and access the hard drive.