Some user Bitlocker Recovery Keys is missing in AAD

AVIJIT DAS 31 Reputation points
2022-09-14T11:15:31.83+00:00

We have deployed BitLocker using AAD, the new device & existing default is successfully enrolled in BitLocker, and the recovery key is stored in AAD, but some device received our BitLocker policy but we don't see any recovery key on AAD, Need assistance for troubleshooting.

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,917 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Limitless Technology 39,651 Reputation points
    2022-09-15T07:58:33.777+00:00

    Hello there,

    What BitLocker group policy settings did you configure for all users?

    BitLocker recovery passwords are only saved to AD and AAD at the time they are set (or reset). Thus, you must either rotate them (which can be done using Intune) or send a script to them to force them to save their keys to AAD.

    Here is a similar case with marked answers.

    Missing Bitlocker Recovery Keys in AAD/InTune https://learn.microsoft.com/en-us/answers/questions/756891/missing-bitlocker-recovery-keys-in-aadintune.html
    Bitlocker Recovery Key is not present in AD for some users https://learn.microsoft.com/en-us/answers/questions/410264/bitlocker-recovery-key-not-present-in-ad-for-some.html

    ----------------------------------------------------------------------------------------------------------------------------------

    --If the reply is helpful, please Upvote and Accept it as an answer–

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.