BitLocker on Campus Computers

Tags bitlocker

My Device has been Bitlockered... help!

What is BitLocker?

BitLocker encrypts the hard drive(s) on your Windows Enterprise. BitLocker drives can be encrypted with 128-bit or 256-bit encryption, which protects your data in the event the computer is lost or stolen. 

BitLocker protects your hard drive from offline attacks. This is the type of attack where a malicious user will take the hard drive from your mobile machine and connect it to another machine so they can harvest your data. 

BitLocker also protects your data if a malicious user boots from an alternate Operating System. With either attack method, BitLocker encrypts the hard drive so that when someone has physical access to the drive, the drive is unreadable.

What does BitLocker do?

BitLocker encrypts the hard drive(s) to protect the Operating System and your files from offline attacks and physical theft.

What does BitLocker not do?

BitLocker does not protect the computer's contents while Windows is running. BitLocker is built for offline attacks.

More detail: https://learn.microsoft.com/en-us/windows/security/information-protection/bitlocker/bitlocker-overview

What types of computers are encrypted?

All state-owned Windows desktops and laptops/tablets.

All new deployments are encrypted during the imaging process and no user interaction is required.

Once my computer has been fully encrypted, will I notice anything different?

Your system drive icon will change to what is shown below. No other changes should be seen or noticed once the computer is encrypted with BitLocker.

I turned my computer on this morning, and it is asking for a Recovery Key!

What Causes Bitlocker Recovery?

An event occurred that caused Bitlocker to engage. This may be swapping of a hard drive, a hardware change, or a change to some internal component of the computer (such as a BIOS upgrade) without properly suspending Bitlocker.

Here are some events that can cause Bitlocker Recovery: learn.microsoft.com/en-us/windows/security/information-protection/bitlocker/bitlocker-recovery-guide-plan#what-causes-BitLocker-recovery

How can I unlock my device?

Contact IT Support Services at 530-898-4357.

Please have your username, the computer name/asset tag, and the recovery ID ready. It is helpful to take a picture of the screen with your phone for easy reference if the system shuts down before you’re able to read the recovery ID.

When you call, the technician will provide a long numeric code that will unlock the device.

A Bitlocker recovery screen