Which devices are affected?
Automatic Bitlocker encryption was introduced with the Windows 10 Build 1703 upgrade. Provided the device meets certain requirements, the device will encrypt itself but wait for activation. Most new devices meet these requirements. The Windows version must be Pro, Enterprise or Education;
How does the encryption activate?
Bitlocker encryption is only activated when there is a Microsoft account on the device. This happens, among other things, when signing in to Office 365 with a business or school account. The addition of a business or school account is described in more detail in chapter 1 «Activating Bitlocker encryption»
Can IT Services prevent the activation of encryption?
No, IT Services cannot prevent activation.
Where can I find the Bitlocker key?
There are two ways to find and save the Bitlocker key on your own. These two ways are described in chapter 2 «Securing the Bitlocker key» .
What happens to the encryption after I leave?
The encryption remains active even after your account at the HSLU/PHLU has been deleted. Therefore, it is mandatory to save the Bitlocker key before leaving! After you leave, you can only save the key as long as access to your device still works. It is recommended that you disconnect your business or school account after you leave, if you have one. This is described in chapter 3 «Disconnecting the business or school account» .
Where can I find the Bitlocker key after I leave?
IT Services does not store the keys. Therefore, you must save the Bitlocker key before you leave!
What happens if I do not have the key?
If a key is missing, the device can no longer be accessed when it is encrypted. In this case, the device must be reset (reset to factory settings);
Please contact the Service Desk if you have any further questions.