[Discuss] Full disk encryption

Kyle Leslie fbxxkl at gmail.com
Tue Jan 3 09:09:53 EST 2012


At my company we are using BitLocker.  Not on every machine right now, but
that is the goal eventually.

One of the huge benefits I think is that the encryption keys/recovery keys
can be stored in AD.  So that if you need to unlock or change the drives
around you don't need to have the user store that some place to get
lost/stolen.  It stores in AD and can be recovered when we need it.

Its  a pretty simple solution for the most part because we are using
Windows Deployment Toolkit to image the machines and then BitLocker runs
after the deployment is done.



More information about the Discuss mailing list