Educause Security Discussion mailing list archives

Re: Microsoft BitLocker


From: Chuck Thomas <cthomas () WORWIC EDU>
Date: Tue, 29 Nov 2011 15:53:28 -0500

*         What laptop make and model do you use?  Approximately how many are in your environment? Dell Latitude (100)

*         What hard drive encryption technology are you using? WinMagic SecureDoc
Have you experienced the problem describe above, where the TPM module of the system is disabled for no apparent reason? 
  The issue you are having with Bitlocker sounds very similar to the issue I had last Spring with our Dell Latitude 
Series laptops.  I traced my issue back to the use of docking stations and Windows hardware profiles.  I could never 
find a solution to the issue, so the College purchased a 3rd party encryption program.

*         How long have you had hard drive encryption deployed? Just starting to deploy the encryption software.


Chuck


Chuck Thomas
Network Administrator
Wor-Wic Community College
32000 Campus Drive
Salisbury, Maryland 21804

Voice: 410.334.2931
Email: cthomas () worwic edu<mailto:cthomas () worwic edu>
Web Site: http://www.worwic.edu<http://www.worwic.edu/>

From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Matt 
Giannetto
Sent: Tuesday, November 29, 2011 1:44 PM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] Microsoft BitLocker

We're experiencing a very frustrating issue with Microsoft BitLocker on our Dell Latitude E-Series laptops.  The 
problem is that occasionally and for no discernable reason, the TPM module for the laptop gets disabled in the BIOS.  
This causes the system to prompt for a BitLocker Recovery Key at boot, rendering the system useless until the user 
contacts the help desk.

I'm hoping to compare notes with other institutions that are using TPM with hard drive encryption so we can try to 
isolate a cause for our problem.  For anyone using hard drive encryption (BitLocker or otherwise) with TPM, would you 
mind giving me a little info about your deployment and experiences?

*         What laptop make and model do you use?  Approximately how many are in your environment?

*         What hard drive encryption technology are you using?

*         Have you experienced the problem describe above, where the TPM module of the system is disabled for no 
apparent reason?

*         How long have you had hard drive encryption deployed?

If anyone has any recommendations in troubleshooting this issue, I'm eager to hear it.  Thank you for your time and 
insight.

Thanks,

Matt Giannetto
Director of IT Security
Montgomery County Community College
mgiannetto () mc3 edu<mailto:mgiannetto () mc3 edu> | (215) 619-7442

The Internet is a dangerous place.
Be suspicious.  Be aware.  Think security.
www.mc3.edu/security<http://www.mc3.edu/security>


________________________________
Montgomery County Community College is proud to be designated as an Achieving the Dream Leader College for its 
commitment to student access and success.

Current thread: