IBM Support

Back up the BitLocker recovery password

Release Notes


Abstract

Back up the BitLocker recovery password

Content

MaaS360 adds new policies to allow administrators to back up the BitLocker recovery password to Active Directory (On-Premises or Azure) and to the MaaS360 End User Portal (EUP).

The organizations that enforce BitLocker encryption through channels other than MaaS360 can also use these policies to back up the BitLocker recovery password on managed Windows 10 devices.

To back up the BitLocker recovery password:

  1. Go to Security > Policies > Windows MDM policy.
  2. In the Device Settings section, click Security > Device Encryption (BitLocker) > Backup BitLocker Recovery Password to Active Directory/Backup BitLocker Recovery Password to End User Portal.

After the policies are published, the BitLocker recovery password is backed up to the following locations:

  • MaaS360 End User Portal
    • Open a device and click the recovery password icon in the top right corner. The Recovery Password screen is displayed.
  • Active Directory On-Premises
    1. Launch the Active Directory Users and Computers app.
    2. Select a domain name > Computers. The domain-joined devices are displayed.
    3. Right-click on a device and click Properties.
    4. In the Properties window, select the BitLocker Recovery tab. The BitLocker recovery keys are displayed in the Details section.
  • Azure Active Directory
    • Log in to the Azure portal and navigate to Azure Active Directory > Devices and open a device.

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSYSXX","label":"IBM MaaS360"},"Component":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"10.70","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Document Information

Modified date:
09 July 2021

UID

ibm10743459