09-06-2023 06:52 AM - edited 09-06-2023 08:05 AM
Hi,
I'm preparing to update my Z690-I to Version 2703. I have 2 drives.
So I've suspended Bitlocker on Drive C:.
But what about Drive D ? Here I can only decrypt the whole drive. This takes a long time. Maybe there is a more convenient solution.
Does anyone know how to manage this?
Update:
This is quite complicated. I've set a preboot pin. What will happen after the Update? Will this TPM Pin be lost?
I've decrypted drive D already. Drive C: is bitlocker suspended.
UPDATE:
Decrypted all drives. Checked with: manage-bde -status
Preboot pin was deleted after decryption.
BIOS Update went smooth.
Bitlocker re-enabled. Set Pin and Encrypting process running.
BESIDES: Why do I have to reCAPTCHA every minute?
09-06-2023 01:52 PM - edited 09-06-2023 01:56 PM
I don't encrypt my OS drive - that's just for the OS and installed programs. However, I do Bitlocker encrypt my data (and several backup drives) and for those I use a Bitlocker password. I don't rely on TPM keys. That's makes it super easy and there is never any risk of losing or forgetting passwords as those are stored in a password database (also encrypted) with a master password and stored in multiple locations.
Just the way I do it, but it works well and I don't need to be concerned about complications if a drive fails, gets corrupted or I lose the TPM keys. Good idea to store your Bitlocker recovery key(s) in a separate password database as well.
I also choose not to use OS RAID, I'd be too concerned about restoring data if a drive failed. I do have RAID enabled on my NAS backup, but that's easy just to plug in another drive if one fails.
09-08-2023 12:51 AM - edited 09-08-2023 12:53 AM
Cannot reply any more. Comment was deleted. Maybe because critizising reCaptcha and new Forum software.