-
Notifications
You must be signed in to change notification settings - Fork 622
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
BitLocker Key #5670
Comments
If u can find a way to get it either via registry/wmi/powershell, then I can implement it, but as fair as I'm aware, no as that would avoid security |
https://www.process.st/how-to/get-bitlocker-recovery-key-without-microsoft-account/ Kinda an RMM function I'd say |
thanks for the hint @dinger1986! but i agree its more of a RMM feature |
Customer losses data when they don't have recovery key with dead pc. We don't have much options too. |
I've just updated to 1.18, but if I want to check the bitlocker recovery password with sysinfo in the meshagent console of a client, the output is empty. "C": { In the terminal the output of Or did I misunderstood the new bitlocker in sysinfo? |
No no, if its showing the recoveryPassword option then you have the latest version? Also same command but without |
manage-bde -protectors -get C: -Type recoverypassword Volume "C:" []
manage-bde -protectors -get C: Volume "C:" []
and this here is the sysinfo again from the console in meshcentral: I restarted the meshagent service in Windows before, it's not changing the sysinfo output. |
@Simon4711 oh poo, ur cmd.exe isn't English!? |
@Simon4711 can you please run this command and see if it returns the language in english for me? |
Sorry, I've no english server. Here is the output. Volume "C:" []
Translation from Google Translator is: chcp 437 & manage-bde -protectors -get C: -Enter recovery password Volume “C:” []
|
Erm sadly that's going to be a pain then and no fix apart from what it is like at the moment, |
@Simon4711 can you just try one more thing for me please? in case its a user display issue |
Still german, but it's o.k. So the feature don't exist in german windows, but I can live without it ;) It's the same in Win10, Win11, WinServer 2019. |
Is it possible to set the output visible somewhere in the dashboard? For example, in the Details tab? |
@JSkolnik i didnt really want to do that because i wasnt sure where to put it or HOW to display it? |
@si458 The use case when recovery keys are needed is when the device is offline - for example after a bad bios update, motherboard replacement, etc. Often the HW vendor has TPM enabled by default, most people do not know about the recovery key. |
@JSkolnik yeh thats a problem, currently the recovery key is only gotten IF the device is ONLINE, it doesnt store that information INTO The database, so i would have to look into HOW the data is stored in the database, to then add to it, |
@Simon4711 im just fixing a bug with bitlocker which wasnt returning keys correctly if multiple drives, |
input on this please people #5746 |
Is there any way we can save bitlocker key to meshcentral server from agent ??
The text was updated successfully, but these errors were encountered: