Setting up BitLocker encryption password from the HexnodeSolved

Participant
Discussion
6 days ago

Hi, I was wondering if I could set up the BitLocker encryption password from the Hexnode portal on my Windows device. Do we have this option in the BitLocker policy?

Replies (1)

Marked SolutionPending Review
Hexnode Expert
4 days ago
Marked SolutionPending Review

Hi @rose-wilson,

Yes, Hexnode provides options to configure both the Startup PIN and Fallback Password for BitLocker encryption. You can set these up using the Force BitLocker Encryption remote action from the device details page.

Here’s how you can do it:

  1. In your Hexnode portal, navigate to the Manage tab and select your device.
  2. Click Actions > Security > Force BitLocker Encryption.
  3. Choose the encryption type – whether to encrypt the entire drive or only the used space.
  4. Configure the following options based on your device’s TPM support:
    1. TPM Startup PIN: Provide a PIN to unlock the drive each time the system reboots. The PIN must be 6–20 digits long, as per the Minimum PIN length set in the BitLocker policy.

      Note: The Startup PIN option must be enabled in the BitLocker policy under OS Drive Settings > Configure additional startup authentication settings > Allow Options/Required Options.

    2. Fallback Password: Set a password to unlock the drive on devices without a supported TPM. In this case, the drive will be encrypted using the Fallback Password instead of the TPM Startup PIN. The password must be at least 8 characters long.

I hope this helps clarify how you can configure the BitLocker encryption password. If you run into any issues while implementing it, feel free to reach out or refer to our documentation.

Regards
Ben Clarke
Hexnode UEM

Save