How to configure Bitlocker Configuration Microsoft Endpoint Manager Intune

preview_player
Показать описание
Encrypt Windows devices with BitLocker in Intune
Configure BitLocker Microsoft intune
How to configure Bitlocker Configuration Microsoft Endpoint Manager Intune
Step by Step msintune configuration for Windows 10 Bitlocker encryption
Enabling BitLocker with Intune
BitLocker Windows 10 How to setup and enable disk encryption with Intune
configure BitLocker with intune
Configuring BitLocker in Microsoft Intune
Step-by-Step Guide to enable BitLocker
How do I enable BitLocker with Intune?
Where is the BitLocker key in Intune?
What is BitLocker key rotation Intune?
Automatically enable Bitlocker encryption with Microsoft Intune
Create an Intune BitLocker policy for Windows 10 devices
How to enable Silent Bitlocker with Intune
Bitlocker management via Intune
Intune - Bitlocker silent and automatic Encryption Settings
Managing Windows Bitlocker Compliance Policy Using Intune

Cheat Sheet

Intune Training Course or Intune Full Course or Microsoft intune Full training or
Intune Training Course or Intune Full Course or Microsoft intune Full training or

00:00:00 Introduction to Bitlocker configuration
00:00:29 Two types of Options for Bitlocker policy creation
00:00:59 Creation of Bitlocker Policy profile in Intune
00:04:40 Summary of Settings
00:05:03 Second option to Create Bitlocker Policy from Endpoint Security
00:06:48 End user Experience for Bitlocker

Intune Interview Questions and Useful Documentation & Design Documentation 👉

AZ-500 Full Course - 17 Hours Exam AZ-500: Microsoft Azure Security Technologies

AZ-900 Full course 10+ Hours - Exam AZ-900: Microsoft Azure Fundamentals

#Bitlocker #intune #paddymaddy
Рекомендации по теме
Комментарии
Автор

Encrypt Windows devices with BitLocker in Intune
Enabling BitLocker with Intune
Configuring BitLocker in Microsoft Intune
Step-by-Step Guide to enable BitLocker
How do I enable BitLocker with Intune?
Where is the BitLocker key in Intune?
What is BitLocker key rotation Intune?
Automatically enable Bitlocker encryption with Microsoft Intune
Create an Intune BitLocker policy for Windows 10 devices
How to enable Silent Bitlocker with Intune
Bitlocker management via Intune
Intune - Bitlocker silent and automatic Encryption Settings
Managing Windows Bitlocker Compliance Policy Using Intune

PaddyMaddy
Автор

Thanks for that detailed explanation Paddy, Your work is really appreciated, Appreciate sharing the knowledge likewise....

flexmundl
Автор

Thank you Sir
You Made my day
Keep going...great work

klentitoska
Автор

After I setup Disc Encryption policy and its pushed out to all devices, will it automatically enable on all new devices added later?

foch
Автор

Thank you.
We have Bit locker policy in place. now i want to create a policy which allow user to connect USB without enforcing the USB encryption.
i've created new policy from disk encryption
enabling full disk encryption
leaving everything else not configured
created new group and added required device on it.
Will it work?

jaydattpurohit
Автор

Hi Paddy

First I would like to thank you for sharing such enriching videos, they help me a lot in my daily life and I am a big fan.

But well, I have a peculiar situation. I need to enable bitlocker for computers that do not have the TPM automatically and without user interaction, as I used your video as a guide and went to other sources so that I could carry out this work.

First I had to create a policy of Configuration Profiles > Templates > Administrative Templates > Computer Configuration > Windows Components > BitLocker Drive Encryption > Operating System Drives and enabled the option "Require additional authentication at startup" and checked the checkbox "Allow BitLocker without a compatible TPM (requires a password or a startup key on a USB flash drive)" to allow the computer to accept activating bitlocker on a computer without a TPM, then I created the script below:

$OSVolume = Get-BitlockerVolume | Where {$_.VolumeType -eq "OperatingSystem"}
if ($OSVolume.VolumeStatus -eq "FullyDecrypted") {
$PIN = ConvertTo-SecureString "123456789" -AsPlainText -Force
Add-BitlockerKeyProtector -MountPoint $OSVolume.MountPoint -RecoveryPasswordProtector
Enable-BitLocker -MountPoint $OSVolume.MountPoint -Pin $PIN -TPMandPinProtector
-MountPoint $OSVolume.MountPoint -KeyProtectorId ((Get-BitLockerVolume -MountPoint | where {$_.KeyProtectorType -eq "RecoveryPassword" }).KeyProtectorId
}

But it appears the error "Enable-BitLocker : An external key or password protector is required to enable BitLocker on an operating system volume without a valid TPM." when I try to run in Powershell ISE. I'm running it on an individual computer to apply it to one, as soon as I can solve it I'll send it via script through Intune.

Do you have another idea on how to solve this problem or have you already encountered a scenario like this?

ketzmann
Автор

Nice video, but not clear on how to enroll devices to intune, which i beleieve to be the first step.

habibabdulla
Автор

What about Bitlocker compliance policy (Require Bitlocker) ? Will Compliance policy enforce bitlocker or will it just say if it is configured or not ?

spodingo
Автор

Your logo in the corner flashing all the time is distracting.

patrickmurphy