Incorrect Active Directory Bitlocker password

Anonymous
2022-05-31T23:53:42.117+00:00

Hello everyone,
Where I work we have enabled a group policy that saves all BitLocker passwords automatically to AD for safety and accuracy. One of our laptops restarted and it now requires BitLocker password, and when we tried using the password that was saved automatically in AD it says that it's incorrect? Why would the password that was saved automatically in AD be incorrect? Please help. Thank you.

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
Windows for business | Windows Client for IT Pros | Devices and deployment | Configure application groups
Windows for business | Windows Client for IT Pros | User experience | Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. MTG 1,251 Reputation points
    2022-06-01T07:44:16.337+00:00

    You need to understand that on the Bitlocker recovery dialog, it mentions a recovery key ID. Only if that ID matches the ID of the numerical password that you see saved in AD will the password work.

    Probably, the drive was re-encrypted and a different recovery password was created and that time not saved to AD so what you see in AD is an outdated password. You will be able to tell by comparing the recovery password IDs.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.