Bitlocker Profile: -2016281112 (Remediation failed) Error code : 0x87d1fde8

RASH MAAR 421 Reputation points
2020-12-01T21:09:37.047+00:00

Hi,

I created a configuration profile to active Bitlocker on windows 10 computers.
Enrollment happens on new computers in OOBE without Auto Pilot.
At the end of the Enrollment process the Bitlocker is active but in Intune I see the following error:

44139-image.png

The properties of the profile are:

44059-image.png

My goal is to activate the Bitlocker automatically during Enrollment and let the user choose a PIN from Control Panel at the end of the Enrollment process.

Thanks

Microsoft Intune Enrollment
Microsoft Intune Enrollment
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Enrollment: The process of requesting, receiving, and installing a certificate.
1,267 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,449 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. Lu Dai-MSFT 28,356 Reputation points
    2020-12-02T06:48:25.817+00:00

    @RASH MAAR Thanks for posting in our Q&A.
    To troubleshoot this issue, we can check if there’s any error in the BitLocker-API logs and BitLocker-DrivePreparationTool logs. To collect these logs, we can see more details in the following link:
    https://learn.microsoft.com/en-us/windows/security/information-protection/bitlocker/troubleshoot-bitlocker

    Research and find a link lists some examples of the cause and solution for encrypt devices with error “-2016281112 (Remediation failed) “. We can read it as a reference:
    https://learn.microsoft.com/en-us/windows/security/information-protection/bitlocker/ts-bitlocker-intune-issues

    Hope it can help.


    If the response is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.

  2. Rahul Jindal [MVP] 9,251 Reputation points MVP
    2020-12-02T22:19:24.893+00:00

    Hi,

    I blogged about my experience a while back. You can take a look here - intune-bitlocker-silent-and-automatic.html

    In my case I set it up for a silent automatic configuration, but have a look anyway.

    0 comments No comments

  3. Jean-Daniel Lavallée 0 Reputation points
    2023-08-03T21:01:46.3766667+00:00

    You might want to check if you have a boot media attached to the system.

    Bitlocker will fail with this error if you do.

    0 comments No comments