Microsoft has fastened a recognized subject inflicting incorrect BitLocker drive encryption errors in some managed Home windows environments.
The corporate stated that Intune is among the many MDM platforms affected by the bugĀ and confirmed thatĀ third-party MDM options may also be impacted.
Nevertheless, when it acknowledged this in October, it clarified that this was only a reporting downsideĀ and the bug doesn’t truly affect drive encryption or the reporting of different gadget issues, together with different BitLocker points on enrolled Home windows units.
‘Utilizing the FixedDrivesEncryptionType or SystemDrivesEncryptionType coverage settings within the BitLocker configuration service supplier (CSP) node in cellular gadget administration (MDM) apps may incorrectly present a 65000 error within the ‘Require Machine Encryption’ setting for some units in your surroundings,” the corporate explains on the Home windows Well being dashboard.
“Affected environments are these with the ‘Implement drive encryption sort on working system drives’ or ‘Implement drive encryption on fastened drives’ insurance policies set to enabled and deciding on both ‘full encryption’ or ‘used house solely’.”
The now-fixed bug solely impacts shopper platforms akin to Home windows 11 21H2/22H2, Home windows 10 21H2/22H2, and Home windows 10 Enterprise LTSC 2019.
Moreover, based on Redmond’s Home windows launch well being web page, it solely impacts techniques the place drive encryption is enforced for OS and stuck drives.
Microsoft has resolved this bug within the KB5034204 preview replace launched on January 23 for Home windows 11 and the KB5034763 cumulative replace launched on February 13 for Home windows 10.
Nevertheless, the corporate says it won’t repair the bug for Home windows 10 Enterprise LTSC 2019, which is underneath prolonged help.
This resolution relies on the truth that the bug is restricted to a reporting situation solely, which suggests it doesn’t affect drive encryption or the reporting of different points on the gadget.
Admins can nonetheless mitigate the difficulty on Home windows 10 Enterprise LTSC 2019 techniques by enabling the “not configured” setting for the “Implement drive encryption on fastened drives” or “Implement drive encryption sort on working system drives” insurance policies in Microsoft Intune.