BitLocker not Enabled on HP ElitePad 1000 G2

I have an HP ElitePad 1000 G2 that I am using MDT to apply our 8.1 x64 Update image.  This task sequence works fine on all other systems on which it has run.  On the ElitePad, when the task sequence completes, BitLocker is not enabled.
Running manage-bde-status returns:
Disk volumes that can be protected with
BitLocker Drive Encryption:
Volume C: [OSDisk]
[OS Volume]
    Size:                 115.58 GB
    BitLocker Version:    2.0
    Conversion Status:    Used Space Only Encrypted
    Percentage Encrypted: 100.0%
    Encryption Method:    AES 128
    Protection Status:    Protection Off
    Lock Status:          Unlocked
    Identification Field: Unknown
    Key Protectors:
        TPM
If I look in the BitLocker applet on the control panel, it says "OSDisk (C:) BitLocker is waiting for activation"
the ZTIBDE.log just stops at:
Attempting to intiate ProtectKeyWithNumericalP@ssword
<Message containing password has been suppressed>
A successful system shows:
Attempting to intiate ProtectKeyWithNumericalP@ssword
Success protecting Key with numerical p@ssword
If I click Turn on BitLocker in the control panel applet or run the following commands:
manage-bde -protectors -add c: -recoverypassword
manage-bde -on c: -recoverypassword
The recovery key protector is created and uploaded to AD and BitLocker shows as enabled.
Any ideas to why this is happening?

after some more investigation, I found the following article
http://netecm.netree.ch/blog/Lists/Posts/Post.aspx?ID=80 and adding the registry key referenced in the article fixed the issue.

Similar Messages

  • Bitlocker Not Enabling

    I am having trouble getting Bitlocker to start on deployment for Win7Ent and Win8Pro
    If I enable bitlocker manually from within windows it works fine
    Tpm is enabled
    Partitions:
    BDEDisk - Boot - Primary - 350 Mb - No Drive Letter
    OSDisk - Primary - 100%
    Ignore "Create Bitlocker Partition" as disabled as I am using partition step for that
    Is there a log I am overlooking, I cant seem to find anything in SMSTS.log but I am no expert in that log and cant seem to find any problems with anything when I do look.

    We enable bitlocker on our task sequences and it always works.   I do see some things that you don't have.
    1)  we do make sure tpm is already enabled (you said you have done this already)
    2)  Our partition disk step has one named "System Reserved (Primary)" and equals 350 mbs.    Then we have another partition named "Windows (Primary)"  using 100% of remaining disk space.  NTFS  (looks like
    you may have this step)
    3)  In our task sequence, before "Apply Operating System", we have "Pre-provision Bitlocker".   Destination is "Next available formatted partition".  Check skip if TPM is not enabled. (looks like you disabled
    this step)
    4)  After "Setup Windows and Configuration Manager", we have a step called "Enable Bitlocker".     We have bitlocker key set to go to Active Directory.   Be sure your active directory is setup for this.  (I see
    that you have this step enabled)
    I'm going to assume maybe you're missing the pre-provision.  re-enable that.  This will fix your "prepare your drive for BL" issue.

  • Bitlocker not enabled after deployment (Dell systems)

    I have been deploying to Dell systems, the TPM chips are active on the machines, these are OOB machines, do the deployment to Enable Bitlocker using TPM Only (SCCM 2012 w/MDT 2012 UDI) but when the machines boot up, it says Bitlocker protection is suspended,
    and if I go to turn it on, the Wizard fails to initialize, saying one or more drive protector keys needs to be available, etc.
    Not sure what's missing in my task sequence to get Bitlocker to encrypt the drive correctly.

    Hi,
    Please check smsts.log to find more information.
    The following blogs might help you to configure the Task Sequence.
    http://blogs.technet.com/b/simonmay/archive/2013/02/05/enable-and-activate-tpm-for-bitlocker-pre-provisioning-in-winpe.aspx
    http://en.community.dell.com/techcenter/os-applications/w/wiki/how-to-enable-trusted-platform-module-using-a-configmgr-2007-task-sequence.aspx
    (Note: Microsoft provides third-party contact information to help you find technical support. This
    contact information may change without notice. Microsoft does not guarantee the accuracy of this third-party contact information.)
    Best Regards,
    Joyce
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Thousands of "mail is not enabled for this user"

    Someone is sending my domain email to thousands of non existent mail accounts. It's like they are combining every possible prefix to my domain they know of. It's been going on for weeks. The Mail service, however, is not being brought down by this at all. So I don't know what kind of attack this is or how to stop it.
    Can someone help me? Below is a minute section of my System log:
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    Dec 31 15:08:55 nameserver lmtpunix[19165]: warning: unable to post message for user: [email protected], mail is not enabled for this user
    ------------------

    Two possibilities - both fall under the heading 'reconaissance by e-mail'. A spammer or hacker will try 1000's of common names, then look at which ones didn't bounce to determine which ones have accounts on your system.
    They then have a comprehensive list of account names on your server, and can proceed to attempt likely passwords for each, or send endless spam to your users. Either one is a Bad Thing, doubly so if you've got any accounts that you created just to test things, and have weak passwords, but you've always counted on nobody knowing they exist.
    At one point, I actually had a 'testuser' account that had 'testuser' as the password - I just hadn't remembered to delete it after I was done testing. It's very common for a system to have a couple of these hanging around. I didn't have trouble with it, but looking for and getting rid of these is critical.
    Either way, the immdiate solution is to go Server Admin->Mail->Settings->Relay, and add the IP address(es) of the senders to the 'Refuse all messages from these hosts or networks' section. Mail attempts will still show up in your SMTP log, but they'll look like this one I got this morning (one of dozens):
    Jan 3 11:07:33 miniserver postfix/smtpd[1440]: NOQUEUE: reject: RCPT from unknown[66.180.115.17]: 554 <unknown[66.180.115.17]>: Client host rejected: Access denied; from=<[email protected]> to=<[email protected]> proto=SMTP helo=<xptwfs.gov>
    Next is to take a look at your password policies - if you've got strong password policies (must include characters and numbers, must be 7 characters or longer, etc., you're probably OK, but if anyone has weak passwords, or god forbid, uses their userid as their password, you're pretty vulnerable.
    It's also worth noting that someone with a full list of your users has a fair number of tools for improved odds of phishing, or spear-phishing, where they create finely targeted mails that say things like 'Bob Smith told me to contact you for your password', and look very real. A warning mail to your users to remind them that they need to keep passwords secret, and be cautious about mail, even if it appears to know something about them, would be good. I wouldn't specify that you've been recon'd, just a general 'New Year Security Reminder' or some such.
    Hope this helps!

  • Completed OSD - Time Changing if Bitlocker is Enabled

    I Have a 99 percent good OSD, but If I have bitlocker enable at the end of the TS the time changes +2hours
    We have an inhouse time server that doesnt seem to be helping me out here.
    I am stumped
    TS Looks Like this (but bitlocker is enabled of course)
    SMSTS.LOG Below
    https://skydrive.live.com/redir?resid=DF018345C62C41DB!116&authkey=!AF4STlz1Pr_ntJU&ithint=file%2c.log

    Do you mean the system time will be added with 2 more hours? The log file does not tell much.
    I recommend you keep the other steps on and Enable BitLocker off. See if it make any difference.
    Juke Chou
    TechNet Community Support

  • HP ElitePad 900 & ElitePad 1000 GPS issue

    I have 2 ElitePad 900 tablets and an ElitePad 1000.  Just about a month ago all their GPSs stopped working.  Sometimes I can get them to work again after 5 minutes sometimes after an hour.  When I bought these tablets their GPS feedback was immediate.  Some other forums for other brand tablets seem to have metioned this too.  Even people returned their device for repair but the manufacturers confirmed their was no technical issue at all.  Some seem to suggest is all about Microsoft Updates.  I don't think it is a hardware issue but I have not found much information at this point!
    Is their anyone with the same issue and who might have a fix or even an explanation as to why this is happening.
    Thanks

    I am sorry, but to get your issue more exposure, I would suggest posting it in the commercial forums, since this is a commercial product. You can click here for the link.
    HP ElitePad 900 G1 Tablet Support
    TwoPointOh
    I work on behalf of HP
    Please click “Accept as Solution ” if you feel my post solved your issue, it will help others find the solution.
    Click the “Kudos, Thumbs Up" on the bottom to say “Thanks” for helping!

  • Mercury CUDA not enabling when using NVIDIA GeForce GTX 285 on Apple Mac Pro after Mavericks install

    Been using the same setup since CS5 with the Mercury CUDA running perfectly. After recent upgrade of OS X to 10.9 Mercury CUDA is no longer available and only lets me run with the OpenGL or software options. Im using a NVIDIA GeForce GTX 285 for apple computers. Here are the results for the GPUSniffer program in the latest Premiere Pro 7.1.0 files. The LAST line make me chucle because it the first on the list of supported card in the "cuda_supported_cards.txt" file. Anybody else seen this?
    --- OpenGL Info ---
    Vendor: NVIDIA Corporation
    Renderer: NVIDIA GeForce GTX 285 OpenGL Engine
    OpenGL Version: 2.1 NVIDIA-8.18.27 310.40.05f01
    GLSL Version: 1.20
    Monitors: 1
    Monitor 0 properties -
       Size: (0, 0, 1920, 1080)
       Max texture size: 8192
       Supports non-power of two: 1
       Shaders 444: 1
       Shaders 422: 1
       Shaders 420: 1
    --- GPU Computation Info ---
    Found 1 devices supporting GPU computation.
    OpenCL Device 0 -
       Name: GeForce GTX 285
       Vendor: NVIDIA (Apple platform)
       Capability: 1.2
       Driver: 1
       Total Video Memory: 1024MB
       * Not enabled by default because it did not match the named list of cards.

    found a link from a couple of days ago on a creative cow forum post one of the poster saying they are from adobe stating this
    Re: Mercury Playback Engine MacPro
    by Peter Garaway on Nov 12, 2013 at 9:49:16 am
    Hi Wendell,
    Sorry for the inconvenience. NVIDIA is currently working on drivers that support CUDA on Mavericks 10.9 with some of the older NVIDIA cards such as the GTX 285 and the Quadro 4800.
    For others interested, the Quadro 4000, K5000 and GTX 680 ect... work with CUDA in 10.9.
    Best,
    Peter Garaway
    Adobe
    Premiere Pro
    I have latest CUDA drivers, so i guess i am just waiting till a proper update that have the fixes to support my card.

  • Why is the 'Choose icon...' button in the Options tab of the field property dialog box not enabled?

    I am using Adobe Acrobat Professional XI running on Windows 8.
    This “feature” has been bugging me for some time now. I remember it happening when I used Acrobat 9 Professional (Windows XP) and it is still happening in Acrobat XI Professional. I think I figured out a situation when I can reproduce this “feature” conistently and I hope someone fixes this.
    Try the following and see what happens:
    1. Acrobat Professional is not open.
    2. Launch Word and start editing a document (or some other authoring tool that can generete PDF document).
    3. After editing the document, generate a PDF version of the document.
    4. Launch Acrobat Professional and edit the PDF document generated in 3.
    5. Add a button.
    6. View the button's properties.
    7. Change the Fill Color property in the Appearance tab to none.
    8. Change the Layout in the Options tab to Icon only.
    Now here is what bugs be. Shouldn’t the 'Choose Icon ...' button be enabled? It is not enabled after step 8. It is possible that 'Choose Icon ...' button is enabled for some of you. I this case, it would be nice if at least one of you who experience the same bug say so in this thread so that Adobe doesn't think I am sending them on a wild goose chase.
    I can enable it by selecting a different tab and then returning to the Options tab. A similar thing happens when reverting back from 'Icon only' to 'Label only' but I am not sure how to reconstruct a scenario for this one.
    Here is the dialog box for one instance when I noticed the bug.
    Regards,
    John

    You're right, it has been that way for a long time. I've never bothered reporting it as a bug since it's simple enough to deal with, but reporting it would be a reasonable thing to do.

  • Purchase info record does not exists in purchase organization 1000

    Hi experts,
              I have created a new enterprise structure in SAP. when i am creating a PO its picking the correct info record, but when i am doing GR, its giving the error as 'purchase info record does not exists in purchase organization 1000". I have maintained everything perfect. the only thing i have changed is I have moved the open and close period from 11-2002 to 12-2008 in MMPV.
             Please give me some suggestions, where it can go wrong.
    Thanks & Regards,
    Poorna.

    Hi Guys,
              Thanks for all yours responses, Actually what deepak said was right, but in my IDES system i am not able to create new entries in assign plant to std purchase org. I found the database view for that, V_001W_E its for table T001W. So i looked into that table i found that std purchase org was given as 1000. i made direct entries in that table, i thought the reason for this may be due to , that i copied plant from 1000. After making entries , i did not got the error message that was i am previously getting.
    Thanks & Regards,
    Ravi.

  • Drill by is not enabled in BO 4.0 WebI report

    Hi,
    In one of my report I have to do Drill by. But when I right click on the dimension I am able to see only Drill Down that is enabled.
    Drill by is not enabled. Please let me know how to enable Drill By in BO 4.0 WebI report.
    Thanks in advance
    Lavanya

    Hai
    Enable drill mode right in BOE 4.0
    http://www.sdn.sap.com/irj/scn/web-intelligence40-elearning-all
    http://www.sdn.sap.com/irj/scn/index?rid=/library/uuid/d0e40af9-0d6a-2e10-b58a-c4ecde511a6e
    Thank u

  • Firefox plays video, but no sound. when I type about:plugins in location bar, it shows the firefox default plugin is not enabled. When I look at my plugins, it says it is enabled. I have uninstalled 3.6 and re-installed with the same result.

    firefox plays video, but no sound. when I type about:plugins in location bar, it shows the firefox default plugin is not enabled. When I look at my plugins, it says it is enabled. I have uninstalled 3.6 and re-installed with the same result. Why do I have no sound. Computer plays I-tunes and all other sounds, just no web browser sounds.

    Glad you seem to have sorted things out.
    The warning about the warranty is light hearted, I think at one stage it warned "here be dragons" but also intended to make us think as it warns that making changes may produce problems.

  • Why firefox 3.6 downloads all of the files again after restartarting the browser from a website if the "clear history when Firefox closed" is not Enabled?

    We have a corporate website, we officially support FF3, FF4, IE8 and IE9. Our web site is quite big, so we really need browser caching, first time page load is around 15 seconds. With files in the cache getting new page is less than a second.
    Everything works perfect except with FF3. With FF4, IE8, IE9 if we are on the website, clicking everywhere is fast, the page is in the cache. If we restart the browser, it is still fast, it loads files from the cache.
    But with FF3 we have a problem. Every time we restart the browser, it is loading the files again from the server, instead of using the local cache (checked with Firebug). I can reproduce the problem anytime, it is the same with every FF3 instances. I double checked, the "clear history when Firefox closed" option is not enabled.
    Could you advise please how to use the local cache either after browser restart?
    Thank you!
    Chris

    Just read that the default memory storage on FF is set to 5 mbs. You can up that by clicking on tools, advanced and overriding the default and set it to 50 mbs (if you use lots of tabs) or 10 mbs (if you use just a few).
    I open a blank tab and clear the cache periodically, while I am working. I can have several tabs open and watch videos on Youtube, by doing this. Have you cleared your cache?
    Since I have an older computer, I've also used CCleaner for years. I use it often, but always before signing off. You can get it free...search for CCleaner, download from Pirifoam free. I didn't change any of the settings and it clears crap left behind from uninstalling programs, clears all browsers at once of: cookies, history, passwords, etc. I love it!
    I had freezing, before using the "open blank tab, clear the cache" thing. Now I have no problems. Plus, as I said...you can change the default memory usage for FF and that should help too.
    Hope this helps! Good luck! :)

  • I can't use home sharing because it says Bonjour is not enabled.  So I went to administrative tools and started it.  Restarted my computer and home sharing still isn't working

    I can't use home sharing because it says Bonjour is not enabled.  So I went to administrative tools and started it.  Restarted my computer and home sharing still isn't working

    I have also tried repairing Bonjour in adminstrative tools and still a no go! Frustrated!!! Looking for another idea

  • Remote Desktop Connection - cannot proceed because authentication is not enabled

    Hello,
    I try to connect via RDP from a Windows Server 2008 R2 to another 2008 R2 Server.
    I always get the error message.
    The connection cannot proceed because authentication is not enabled and the remote computer requires than authentication be enabled to connect.
    On the target machine the Remote Settings are set to:
    Allow connections from computers running any version of Remote Desktop.
    Firewall is disabled on both servers.
    Therefor I do not understand why I get an error message, that authentication is required.
    The target box is a nearly fresh syspreped machine with all current Hotfixes installed.
    I already found a lot of people having that problem by using XP (old RDP client), but no one seems to have this problem when connecting from 2008 R2 to 2008 R2.
    Thank you very much in advance for every hint.
    BR
    Matthias

    Hi Matthias,
    First I would like to confirm if you have deployed RDS (Remote Desktop Services) and you got the error, if so, please check this option
    TS Configuration, >> RDP-Tcp Properties >> change the Security Layer to "Negotiate"
    Then Recycle the TS Gateway service.
    Refer to:
    Unable to connect to Server using the Remote Web Workplace (RWW) Small Business Server 2008
    If this issue has nothing to do with RDS, and I suppose you used the cmd "mstsc" to remote access. This issue may also occur because of the version of mstsc, please make sure it has been upgraded to the new version.
    In addition, Did you have another newer server available like Server 2012? So we can test and try to use Server 2012 to remote access Server 2008 R2, and check if the issue persists.
    If there is anything else regarding this issue, please feel free to post back.
    If you have any feedback on our support, please click here.
    Best Regards,
    Anna Wang
    TechNet Community Support

  • Since updating to Firefox 3.6.15, I can no longer print coupons from SmartSource. The error message is that Java is not detected. The check box is longer showing in the Options/Content of this version of Firefox, so I can not enable it.

    # Question
    Since updating to Firefox 3.6.15, I can no longer print coupons from SmartSource. The error message is that Java is not detected. The check box is longer showing in the Options/Content of this version of Firefox, so I can not enable it.

    Same PC as I used to post the question. When I go to the "plug in check" page, it shows I am up to date and it is not disabled.
    Java(TM) Platform SE 6 U24
    Next Generation Java Plug-in 1.6.0_24 for Mozilla browsers 1.6.0.24

Maybe you are looking for