Bitlocker activation in the MDT 2008 task sequence works great! In the lite touch deployment you can check the box that will tell it to save the recovery key in AD. When the task sequence is complete and drive encryption is complete, for some reason the key is not getting stored in AD. Why isn't the lite touch deployment storing the key in AD for me? I have verified the laptop IS in the domain while the encryption is occuring. Any thoughts?
Even though i set the value in customsettings.ini file, nothing is getting refelected in the Enbale bitlocker wizard. Below are the values set in the INI file;
SkipBitLocker=NO
BDEInstallSuppress=NO
BDEDriveLetter=Q:
BDEInstall=TPM
BDERecoveryKey=AD
BDEWaitForEncryption=TRUE
Start Free Trial