BitLocker

Hello I have one in the process of automation of windows 7 to our environment and we want to deploy Bitlocker.

I was looking for a utility or a command line, we can run in windows 7 to turn on the TPM security for laptops Lenovo hardware chip.

T60 are most of the material of the time.

Thank you!

Rye

Yes, I don't think that you can control the functions of BIOS from within an operating system among the security features, although you can communicate with the characteristics of the memory of the TPM as storing keys etc here.

Although you can enable the ability to allow the flashing of BIOS of the OS environment, I don't know how, you can write a script to activate the TPM like that on an existing BIOS. A crazy idea maybe to Flash a new BIOS with the module TPM enabled by default - but this is a drastic measure and complex.

Maybe if you turn on the TPM for the first time in windows (assuming that your TPM module is disabled in the BIOS), it prompts you to restart the OS in which the BIOS invites you to confirm activation of TPM - I don't know if it works like that because I've always had my TPM before registration of the ownership of the TPM secure windows. But I erase the TPM keys once under Windows and have been invited to restart the OS in which a BIOS and then asked me to confirm the action, so I wonder if the operating system can do something similar to turn on the TPM module. that is, windows will ask you to reboot at least once and then BIOS may prompt you to confirm. I know not, reset key is like that, turn on the TPM secure? I do not know; Maybe you can let us know.

Anyway, if all else fails, maybe Intel AMT can do - but I have never used it myself. Also, I don't know if T60 processors support Intel AMT. otherwise it will just be a lot of manual work - its not too bad if all goes well.

Tags: Lenovo Products

Similar Questions

  • FileVault and Bitlocker, Windows 10, OSX10.11

    I'm curious as to the viability of using FileVault on my OS X and Bitlocker partition on my bootcamp partition. I tried before with apparent success on Windows 8.1 and tried again today with Windows 10, using the EFI System.

    First of all, I enabled FileVault before using 10 Windows in Bootcamp. Then once Windows 10 has been installed, I have enabled Bitlocker. Two boot partitions and to report being encrypted, but I've seen web old descriptions indicating that the MBR needs to be changed to make this installation work, or that Windows must be installed on the punched.

    Here is the read disk structure (128 GB MacBook Air SSDS) diskutil. Any thoughts are appreciated.

    #: NAME SIZE TYPE IDENTIFIER

    0: GUID_partition_scheme * GB 121,3 disk0

    1: disk0s1 EFI EFI 209.7 MB

    2: Apple_CoreStorage Macintosh HD 88.3 GB disk0s2

    3: disk0s3 Apple_Boot Recovery 650.0 MB HD

    4: Microsoft database 31.8 GB disk0s4

    5: Windows Recovery 366,0 Mo disk0s5

    MBR is valid on facilities that use the legacy BIOS Setup. What year/model is your Mac?

  • 250 HP G4: HP 250 g4 Windows 7 Bitlocker

    Hello.

    I have HP 250 g4 with TPM module and installed Windows 7 x 64 Ultimate.

    I have updated the bios to version F. 21 and set options 'Device TPM' to 'Available' and "State TPM" to "enabled."

    In Device Manager I see Security TPM v. 2.0.

    When I try to use Bitlocker, I get message, TPM does not support the current version of WOOD and I need to contact the manufacturer of the BIOS update.

    How to fix?

    Which option 'TPM State' in the BIOS do?

    Concerning

    I solved this problem. System disk must be converted to MBR mode TPG. Windows 7 must be installed using the UEFI. You must install the Windows6 update. 1 KB2920188-v7 - x 64.  After Bitlocker with TPM2.0 works.

  • Activation of BitLocker on a Portege M400 problem

    I updated my BIOS to version 3.6 and I switch on the TPM on the computer module, but when I tried to turn on bitlocker encryption, I was told that the motherboard could not communicate with the TPM module.

    Anyone who manages to make it work?

    Hello

    I already posted a short statement of Bitlocker.
    I found this useful thread on Bitlocker here:
    http://forums.computers.Toshiba-Europe.com/forums/thread.jspa?threadID=23935&MessageID=87849

    You can use the Bitlocker without a TPM, but in this case only, the BONE volume encryption is available.

    Greetings

  • Tablet-Stream 7-5709: battery problems and bitlocker guest

    The product number is K4F53UA.

    The problem of the battery does not charge properly and now I'm wondering the bitlocker code whenever I have to turn off the tablet.

    When the Tablet is turned on, Windows is running and it is plugged, the tablet will not load. It never shows the compressed load and after a while, the battery will stop and the Tablet turns off. While it is turned off, plug the Tablet into causes the charge icon will blink. If the battery still has some power left in charge icon lights up for about 10 seconds, turn off for 2 seconds lights up for 10 seconds, turn off for 2 seconds and continue to do this for a while unitl it just stops. If the battery has been emptied before that happens the same thing off the power except for the icon to load time of stay is a fraction of a second.

    I went into the menu diagnostics and completed of the rapid and Extensive tests. Has been correctly executed without error, but not the case in the diagnostics menu it shows battery when it is plugged.

    I tried to put this before, but it does not show on the forum.

    When the Tablet is turned off and you first plug the charger, you should see the pictogram of loading on the screen for 10 seconds and then disappear for the rest of the time the charger is connected.  If you see something different, the Tablet may be damaged if you have checked that the charger and cable are good.

    Others here have noted the pictogram charge flashing and it turned out to be a faulty Tablet unfortunately.

  • Yet WT8 - BITLOCK-how to create a key?

    Hi all.

    I have no need of BitLock on my Toshiba WT8 yet, but if you read my last post, you will see that he did a heck of a headache.

    To reduce the risk to be locked AGAIN somehow or other, I don't know how it happened the last time that I didn't activate or touch all the parameters relating to the BitLock) to my knowledge.

    As stated I have no need for this, nor do I have any knowledge in its use.

    I would like this does not happen, so I'll ask a few questions and you can help me please.

    I do not remember, but when the Tablet is first turned on and being prepared I get presented with the option/setting to enable/disable the Bitlocker?

    If not, and the operating system was set in motion, to access Bitlocker (on my Windows 7 PC desktop I'll in the Panel, I suppose that the table would be substantially the same).

    Now when the Bitlock icon has been clicked and it opens, that I have to actually activate it by clicking/tapping/ticking or else create a key, or can I create a key in the Bitlock window without it actually start/turn on the program?

    Concerning

    To be honest it s not I know if you will be asked to configure the Bitlocker configuration first.
    But as the bitlocker is a feature advanced Windows system and not available for all the Windows system, I think that this option is not in the first configuration.

    However, the Bitlocker is a feature of Microsoft Windows, and if you want more details on the features, I recommend you to check the page MS Bitlocker
    FAQ:
    https://TechNet.Microsoft.com/en-us/library/hh831507

    What's new in Bitlocker:
    https://TechNet.Microsoft.com/en-us/library/dn306081

  • How to enable bitlocker on Tecra M5 with Windows 7

    Hello!
    Can someone help me to enable bitlocker on M5 with Win7?
    I also think that a BIOS update is nessessary, but the version that I downloaded from Toshiba (3.70) doesn´t work on the M5 motorway. "This computer is not supported.
    Please, help me

    Tanks, bye

    As far as I know, this problem is not related to Toshiba, but for the version of the OS pre-installed so for more information contact Microsoft.

    What version of Win7 you have installed on your laptop Tecra?

  • Tecra M5 - supported BIOS for Bitlocker in TPM mode

    I have a Tecra M5 (PTM51E) running Vista Ultimate. I would like to configure Bitlocker with the TPM secure who is aboard. I am aware that you can use Bitlocker without a TPM, but it requires the user to have an external token for example on a USB key that they have to be inserted at boot time. I prefer to use the TPM mode there is no need of this.

    I have flashed the BIOS to v3.60 which is the last. Before I was able to Flash the BIOS in Vista (which is the only option provided on the Toshiba's European support site) I found I was load drivers for 'VAT package', without that this BIOS update simply says "computer not supported." Another way to do it is get the BIOS for the PTM51U from the American site which allows you to write the BIOS update on a bootable floppy.

    I used the "Bitlocker Drive preparation tool" which is available in "ultimate" Microsoft to set up the partitions as required by Bitlocker, i.e. my HDD 40 GB is divided into a primary to be encrypted (c) partition of 35.7 GB and 1.5 GB separate partition (s).

    I have the driver v3.00.1135.00 "Trusted Platform Module", which is the last. After you activate the TPM secure in the BIOS (press and hold ESC when turn on/off and then press F1, second page) I can then go to the Infineon security platform Initialization Wizard and set the "owner of the platform" and other passwords etc.

    The TPM Initialization Wizard automatically opens the Bitlocker setup application when it ends (or you can get to it any time thereafter through the control panel).

    The message I get from the Bitlocker cmdlet is:

    "Your system is not configured to use BitLocker Drive encryption. The BIOS did not correctly communicate with the Master Boot Record (MBR). Contact the computer manufacturer for BIOS upgrade instructions'.

    Does anyone have this working on a M5 (i.e. Bitlocker with TPM)? How did you do?

    Thank you very much m.

    Hello

    Please contact the nearest authorized service partner. They can help you upgrade the BIOS BIOS supports bitlocker, including the update for EC/KBC. I know it seems strange, but make sure that they can help you.

    Just call and ask.

  • BitLocker in Vista 32 bit Ultimate activation is not possible on Tecra M4

    It of not possible to enable BitLocker with my Tecra M4 Bios 3-50 and TPM 3.00.

    BitLocker TPM error message not found. Technical Library Microsoft says Vista SP1 has TPM V1.2 for install. In Toshibas Read Me in Pakcke 3.00.1178.00 of the update is displayed V1.2 and possible Bitlocker with this package. But Infinion administrator

    Parametriesierungstoll displays only the TPM 1.1 and the selftest passed ok, but BitLocker find no TPM.
    What should do? Thanks for help.

    Need for BitLocker TPM v1.2

    The M4 has only v1.1, you will need to disable the TPM and to do this:

    http://www.vistaclues.com/enable-BitLocker-without-a-TPM/

    Vista tells you he needs a module of TPM for BitLocker, but it happens. To enable BitLocker without a TPM, follow these steps:

    1. open the Group Policy Editor by clicking on start, type gpedit.msc, and then press ENTER.

    2. navigate to computer BitLocker Drive Windows\Chiffrement userconfiguration\administrative ordinateur\modeles.

    3. double-click on Control Panel settings: activate the Advanced Boot Options.

    4. click on activate. Then, select the allow BitLocker without a Compatible TPM check box.

    Click - allow - bitlocker.png

    5. click on OK.

  • Satellite A550d - bitlocker doesn't activate - no active TPM

    I installed Win7 ultimate, but bitlocker only set as he says, he can't find a TPM module on the machine.

    (1) is the installed module
    (2) where / how to make win 7 to recognize

    Thank you!

    Hello

    What cell phone do you have exactly?

    I found this FAQ from Toshiba:

    * Trusted Platform Module (TPM) is not found when running Bitlocker on Windows 7 Enterprise and Ultimate editions.*
    http://APS2.toshiba-tro.de/KB0/TSB0B03260000R01.htm

  • Windows 7 64-bit Bitlocker Tecra M5

    Hello
    I'm not able to get the bitlocker encryption works on the Tecra M5 running Windows7 64 bit.
    I was able to launch the TPM secure and take possession of it but when try BitLocker encrypt the drive it throws this error:

    Your system is not configured to use BitLocker Drive encryption. The BIOS did not correctly communicate with the Master Boot Record (MBR).

    If someone managed to get this working on a M5?

    Thank you
    Stefan

    Hello

    I use a software called, True Crypt. It is available here:

    http://www.TrueCrypt.org/downloads

  • Questions of BitLocker on Satellite P100-454

    When I "got" my pc, I learned that it was 100% vista Compatible.
    Now after 6 months I had my Windows Ultimate! (Was OEM Home Premium)
    And the Bitlocker (TPM) is not in my bios!
    Need to change! What is that!?

    Hello

    TPM can be explained here:
    http://en.Wikipedia.org/wiki/Trusted_Platform_Module

    Maybe you should try a bios update. If you then still without TPM module available so the machine is able to do the TPM module.

    By the way: Vista capable does not mean that your machine should have TPM! Compatible Vista means only that the hardware installed on your machine is certified to work properly with Windows Vista.

    See you soon

  • Protégé M200: Question about Vista TPM and the Bitlocker

    You want to know if I have a TPM chip to launch bitblocker on the M200 using Vista. Just call Toshiba Technical Support - the guy was totally distraught!

    If I don't have a TPM chip, then I can install it?

    Hello

    It is a good question. To my knowledge the Portege M200 does not support TPM but the Portege M400, R400 module and the R200

    But the Bitlocker, which is only available on the Vista Enterprise and ultimate can also be used without the TPM chip but then some functions are not available; for example, the SecureBoot.
    Without TPM only the OS volume encryption is available.
    In this case you can encrypts the entire Windows volume including both data and file system user, the file of hibernation, the page file and the temporary files.

    Using volume of BONE (HDD) encryption an encryption key will be generated. This key will be written to the USB and then the USB is required!

    AFAIK the Bitlocker requires 2 partitions. A partition must be created as needs at least 50 MB primary partition. I recommend a? about 1.5 GB
    The second big partition Vista can be installed.

    After the installation of Vista the Bitlocker must be enabled in Group Policy (units without secure TPM). This can be done using the command 'gpedit '.
    And then under models of administration-> windows components-> Bitlocker bitlocker function can be activated!

    Anyway, there is much information Bitlocker and I think you should also consult the Microsoft Web site for more information:
    BitLocker Windows Drive Encryption step-by-step guide

    I hope I could help a little

  • Loop of TP Tablet 8 Bitlocker after BIOS update

    Holy God, I just upgraded the BIOS later and I'm done with the Bitlocker recovery loop.

    I'm not aware of any password and I have no backup, AFAIK.

    Please, please, help me to this boot loop.

    Has not found a way how to get Windows 10, disable the security chip in the UEFI apparently have no help.

    Thank you.

    After a phobecall with technical support, I finished factory imaging (running now). Great support from Lenovo, why they didn't say me to save the bitlocker recovery key before proceeding with the update of the BIOS?
    I look forward to clean up the original W8.1, upgrade to W8.1 Pro and then the upgrade to Pro W10. PFFFF

  • Deploy a Lenovo with SCCM and enable Bitlocker during deployment?

    Hello!

    Anyone got information about TPM activation and activate bitlocker during the deployment of the new Lenovo with SCCM?

    Something like that but for Leonovo

    http://www.nullSession.com/2010/12/02/enable-TPM-in-task-sequence-with-SCCM-and-CCTK/

    Thank you, Magnus

    You can automate the secure TPM activation process, please see my post in another thread:

    http://forums.Lenovo.com/T5/ThinkVantage-Technologies/activate-TPM-chipset-and-suppress-F10-at-reboo...

    Any questions, let me know

  • Windows 7 Bitlocker TPM bios password

    is it necessary to password protect the BIOS if you use Bitlocker and TPM?

    Technically, no, however, if someone goes into the BIOS and disable the security chip, after defining the bitlocker encryption, I think that you would be left with a mess.

Maybe you are looking for