21. Configure Active Directory to Store BitLocker Recovery Keys

preview_player
Показать описание
Video Series on Advance Networking with Windows Server 2019:

In this video tutorial we will show you how to easily configure the Active Directory to Store BitLocker Recovery Keys using group policy in Windows Server 2019 Active Directory Domain.

1: Setup Group Policy to Store BitLocker Recovery Keys in Active Directory.
2: Install BitLocker Drive Encryption Feature in Server 2019.
3: Enable BitLocker for Windows Server 2019 Operating System.
4: Verify BiLocker Recovery Key is stored in Active Directory.

Video on How to Configure BitLocker Drive Encryption on Windows Server 2019:

Follow my blogs:
Рекомендации по теме
Комментарии
Автор

It worked, very helpful, thank you so much for sharing knowledge.

HaiPhan-pwpi
Автор

Thank you very Much Perfect video very Helpful!!!!

deniscostacantor
Автор

Great video, very instructional. Got an odd ball question though, our current network has four separate domain controllers and they all work in parallel. Would installing these features on each domain controller one at a time cause any issues in regards to PC's becoming inaccessible? If we reboot one DC our full domain remains online, though what we're concerned about is if we enable BitLocker backups on one controller and it's out of sync with the others, think it may shut down? Or, is it fine if we install the BitLocker features on each domain controller one at a time? Thanks!

chromamusic
Автор

Didn't get this part of tutorial. Although I have the GPO configured and applied to the computer, do I have to manually enable BitLocker?

fabriciomattos
Автор

thx for your valuable information video

nashaatmena
Автор

Is it possible to encrypt windows 10 client disks by GPO without having to go the users machine? The video shows the Key controller GPO, but does not show encrypting disks by AD without the need Activate the bitlocker on the users machine. Thank you very much, and i look forward to It.

renatomateus
Автор

If I want yo use TPM, How will be the additional authentication setup?

jeanca
Автор

have got message during encryption :Fehlermeldung: Die GPO-Einstellungen für BitLocker stehen in Konflikt
The GPO settings for BitLocker are in conflict

faizbhagett
Автор

Does anyone know how to increase the number of bad passwords before the Bitlocker recovery process starts? It seems to be set to 5 by default but I can't figure out how to change it.

peteschaub
Автор

I am unable to get next button even though I’ve followed all your steps. Another thing is I am prompted to save recovery keys in azure AD and I want it to be on premise AD. Please help

phutiish
Автор

Video is very helpful i have one query and issue that the above steps are working properly but what we can do for another drives as well. I have tested it for D: drive but in active directory there is only C: drive key is backed up.

nikhilkal
Автор

I have a small and random case of AD losing bitlocker keys. Is there a way to protect the key from updating to blank or backup of my keys once they are stored or something?

arcadeslum
Автор

Nice video. Can you create a script or tell us how we can encrypt the OS hard drive... You have told us how to recover the bitlocker viz AD
Thanks for sharing that

imranawan
Автор

i have got only two option after encrypt c: save file recoverykey print. there is no option for password

faizbhagett
Автор

does the "Require BitLocker backup to AD DS" mean that BitLocker will automatically enable on computers in the OU? I've found that computers are automatically seeming to have BitLocker enable for them. thanks.

zachdouglas
Автор

I mean, what is now true? Should one not use MBAM to save Windows10 Clients keys in AD?

DeliMan
Автор

How to lock PC when a user enters an incorrect password several times, that user simply gets locked out of his account.
How do you when the user enters the wrong password then goes to bitlocker recovery mode ?

technoshare
Автор

Is that possible to bitlocker key change automatically without reset by manually from client computer? If yes can you plz let me know the process and it can be changed once it being used
Plz let us know if any process available

kiranmestry
Автор

It is possible to automatically unlock drive without enter a password at startup? Using the keys stored in TPM chip?

ciprianpopovici
Автор

Oke memberserver but what with client computers? Windows 10

deejagers