Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update bitlocker-recovery-known-issues.md #1608

Merged
merged 3 commits into from
Sep 20, 2024
Merged
Changes from 2 commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -27,9 +27,9 @@ Windows prompts for a BitLocker recovery password. However, a BitLocker recovery

The BitLocker and Active Directory Domain Services (AD DS) FAQ address situations that may produce this symptom, and provides information about the procedure to resolve the issue:

- [What if BitLocker is enabled on a computer before the computer has joined the domain?](/windows/security/information-protection/bitlocker/bitlocker-and-adds-faq#what-if-bitlocker-is-enabled-on-a-computer-before-the-computer-has-joined-the-domain-)
- [What if BitLocker is enabled on a computer before the computer joins the domain?](/windows/security/operating-system-security/data-protection/bitlocker/faq#what-if-bitlocker-is-enabled-on-a-computer-before-the-computer-joins-the-domain-)

- [What happens if the backup initially fails? Will BitLocker retry the backup?](/windows/security/information-protection/bitlocker/bitlocker-and-adds-faq)
- [What happens if the backup initially fails? Will BitLocker retry it?](/windows/security/operating-system-security/data-protection/bitlocker/faq#what-happens-if-the-backup-initially-fails--will-bitlocker-retry-it-)

## The recovery password for a laptop wasn't backed up, and the laptop is locked

Expand Down Expand Up @@ -119,7 +119,7 @@ This issue occurs if the Surface device TPM is configured to use Platform Config
- Secure boot is turned off.
- PCR values have been explicitly defined, such as by group policy.

Devices that support Connected Standby (also known as *InstantGO* or *Always On, Always Connected PCs*), including Surface devices, must use PCR 7 of the TPM. In its default configuration on such systems, BitLocker binds to PCR 7 and PCR 11 if PCR 7 and Secure Boot are correctly configured. For more information, see the [BitLocker Group Policy Settings: About the Platform Configuration Register (PCR)](/windows/security/information-protection/bitlocker/bitlocker-group-policy-settings#about-the-platform-configuration-register-pcr).
Devices that support Connected Standby (also known as *InstantGO* or *Always On, Always Connected PCs*), including Surface devices, must use PCR 7 of the TPM. In its default configuration on such systems, BitLocker binds to PCR 7 and PCR 11 if PCR 7 and Secure Boot are correctly configured.

### Resolution for after installing UEFI or TPM firmware updates on Surface, BitLocker prompts for the recovery password

Expand Down