This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

BitLocker configuration error

When attempting to configure clients the encryption process is not displayed to the user. I have to manually go into the Control Panel and turn on BitLocker. This is not the situation I want however because then the recovery keys are not managed by the Safeguard server. But I went with it to see what would happen. After going through the BitLocker stuff and choosing my pin I was prompted with a Safeguard window asking to create a pin and that my machine would restart. So I thought okay, maybe I'm getting somewhere. Restarted my machine to receive the following error "The BitLocker encryption key cannot be obtained. Verify that the TPM is enabled and ownership has been taken. If this computer does not have a TPM, verify that the USB drive is inserted and available". I went into the TPM management console and it tells me the TPM is ready for use. Clearing the TPM hasn't proven to help either.

 

Any help at all would be appreciated please!

 

-Brandon



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi Brandon,

    Have you tried changing the owner password or resetting the TPM lockout from TPM.msc? Sometimes this helps (depending on the cause).
    You might want to check you don't have anything like FastBoot/RapidBoot/QuickBoot enabled, ensure that is set to Thorough/Full depending on the wording from your vendor. If that fails check the BIOS boot order is (1) HDD and (2) USB with no other devices enabled.

  • Going into the Event viewer there is listings related to the TPM. "The Trusted Platform Module (TPM) hardware failed to execute a TPM command" with an Event ID of 17.

Reply Children
No Data