1. Home
  2. Software and Licensing
  3. Windows – Intune Bitlocker Recovery

Windows – Intune Bitlocker Recovery

Intune leverages BitLocker, Microsoft’s Windows encryption utility, to protect its Windows endpoints. All Windows devices enrolled in Intune must be encrypted, including desktops, laptops, and tablets. This is enforced to maintain compliance with UVM security policy and industry best practices.

BitLocker leverages the Trusted Platform Module (TPM) hardware chip to encrypt devices. If a device does not have a TPM, a pin will be required to encrypt the device. Users with devices that fail to encrypt due to not having a TPM should contact the Tech Team for assistance.

Verify Encryption Status

The easiest method to verify BitLocker status on a Windows device is to look at the status of the C: drive in This PC.

Windows 10

To check in Windows 10:

  1. Open File Explorer
  2. Click on This PC in the left hand navigation
  3. Select the C: Drive
  4. Click on the View tab in the ribbon and then click on Details pane
  5. You will see the BitLocker status on the right side (off in this example)

Windows 11

To check in Windows 11:

  1. Open File Explorer
  2. Click on This PC in the left hand navigation
  3. Select the C: Drive and then click the Details button in the top right.
  4. You will see the BitLocker status on the right side (on in this example)

Key Recovery

If something goes wrong with the computer, BitLocker may prompt for a recovery key in order to unlock the drive prior to the computer booting into Windows. If this happens, users need to reach out to the Tech Team to request a recovery key.

Updated on May 20, 2024

Related Articles

Not the solution you were looking for?
Don’t worry we’re here to help!
Submit a Help Ticket