Silent BitLocker Encryption Policy Intune, Windows 10 & 11; OS & Fixed Drives | Standard, Admin User

preview_player
Показать описание
Intune Policy for BitLocker Device OS & Fixed drive Encryption in Windows

BitLocker is available on devices that run Windows 10/11. Some settings for BitLocker such as silent encryption which we will be discussing in this video require the device have a supported TPM.
What we cover here are,

Create and deploy Intune BitLocker policy
Silently enable BitLocker on devices
Monitor disk encryption
Basic troubleshooting tips

Other related videos:

Timeline:
0:00 Introduction
1:02 BitLocker pre-requisites
2:03 Create & Deploy BitLocker Policy
3:27 Test Policy
5:18 Monitor Event Logs
5:47 Recovery Keys

Subscribe & follow
Рекомендации по теме
Комментарии
Автор

Hi all,

There are two options available to encrypt drives:
Option 01. under Endpoint Security > Disk Encryption and

Option 02. through device configuration profiles.

The requirements include saving the key to Azure AD and AD, with the need for silent encryption without a user interface.

My question is,

Q1. for SILENT BITLOCKER ENCRYPTION, which method should we choose, Option 01 or Option 02?

Q2. If we create a profile only under Endpoint Security > Disk Encryption, will the encryption work?

Q3. Or do we need to define BitLocker configuration in Endpoint Security, and use the same settings in the profile under device configuration?

Q4. And same group assignment for profile created in option 1 and option 2.?

sanjeev.bhardwaj
Автор

Do you have solutions to get rid of MDM on Windows.

selmaneaissa
Автор

Can we create Bitlocker things from configuration profile instead of going end point security or is there any difference ????

mathankumar
Автор

Hey Praveen, Great video. Will it work on VM in Hyper-V?

Palkan
Автор

Nice video, but how to enroll my devices to intune?

What about devices hybrid joined? Can we apply the same?

habibabdulla