SCCM 2403 and UDI Designer and Task Squence and bitlocker issue

PerserPolis-1732 1,821 Reputation points
2024-07-05T12:20:54.23+00:00

Hi

I did created a MDT/UDI TS and deploy it. The Bitlocker does work not complete

  1. Bitlocker
  • The Bitlocker should encrypt my C:\ drive and D:\ drive, but it encrypt only C:\ drive
  • The Bitlocker Recovery KEY does not stored on my DC under Computer -->Properties--->"Bitlocker Recovery".
  • User's image

My setting on the UDI Designer

User's image

-

I did check the log file "ZTIBde.log" and "smsts.log" and found the following information:

The task sequencer log is located at C:\WINDOWS\CCM\Logs\SMSTSLog\SMSTS.LOG. For task sequence failures, please consult this log.

System drive is: C:

We are running a OS that supports BitLocker

OSDBitLockerTargetDrive= , OSDBdeTargetDriveLetter= , sOSDBitLockerTargetDrive= C:

About to perform variable rationalization.

BitLocker Mode set to: TPMPIN

Starting search for removable drive

The search for a USB drive failed

BitLocker Startup Key Drive Value set to: C:

BitLocker Create Recovery P@ssword Status: AD

BitLocker Wait For Encryption Status set to: FALSE

And I check that Link too

https://learn.microsoft.com/en-us/troubleshoot/mem/configmgr/troubleshooting-reference#ZTIBde.wsf

Any Idea why?

Microsoft Configuration Manager Deployment
Microsoft Configuration Manager Deployment
Microsoft Configuration Manager: An integrated solution for for managing large groups of personal computers and servers.Deployment: The process of delivering, assembling, and maintaining a particular version of a software system at a site.
975 questions
Microsoft Configuration Manager
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. XinGuo-MSFT 17,931 Reputation points
    2024-07-08T09:01:00.25+00:00

    Hi,

    Are you targeting Windows 10 or Windows 11, and have you tested the affected range?

    I recommend you use the BitLocker Management Control Policy to control the BitLocker.

    Use modern PowerShell scripts instead of VB scripts.

    SCCM MBAM integration


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.