Silent Bitlocker deployment issue

Matthew Hedrick 1 Reputation point
2023-11-28T21:45:44.3633333+00:00

Hello,

I am trying to deploy a silent Bitlocker policy and have looked at different setup guides even the official one from Microsoft under Endpoint Security when setting the policy they all show hide prompt under there and autopilot.

But under my policy it is only showing require drive encrypt. Allow warning and configure password rotation.

So I am trying to figure out what or if I am doing something wrong..2023-11-28 16_43_36-Edit profile - Bitlocker - Microsoft Intune admin center

Microsoft Security Intune Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. ZhoumingDuan-MSFT 17,165 Reputation points Microsoft External Staff
    2023-11-29T02:27:51.66+00:00

    @Matthew Hedrick,Thanks for posting in Q&A.

    From your description, I know that you are confused on silent BitLocker policy settings and want to figure out.

    Based on my research, if you want to silently enable BitLocker via Intune, there are two methods you can configure it and settings you can refer.

    1.Endpoint security Disk encryption policy

    • Require Device Encryption = Enabled
    • Allow Warning For Other Disk Encryption = Disabled

    User's image

    2.Device configuration Endpoint protection policy

    • Warning for other disk encryption = Block.
    • Allow standard users to enable encryption during Microsoft Entra join = Allow
    • User creation of recovery key = Allow or Do not allow 256-bit recovery key
    • User creation of recovery password = Allow or Require 48-digit recovery password

    https://learn.microsoft.com/en-us/mem/intune/protect/encrypt-devices#required-settings-to-silently-enable-bitlocker

    Hope this can be helpful. If there is any update, feel free to contact me.

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.