Windows 11 encrypted my drive automatically


Windows 10 Pro upgraded to Windows 11 Pro, no BitLocker enabled here during or after install.
 

My Computer

System One

  • OS
    Windows 11 Pro 24H2 (RP channel)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Gigabyte
    CPU
    AMD Ryzen 5900X 12-core
    Motherboard
    X570 Aorus Xtreme
    Memory
    64GB Corsair Platinum RGB 3600MHz CL16
    Graphics Card(s)
    MSI Suprim X 3080 Ti
    Sound Card
    Soundblaster AE-5 Plus
    Monitor(s) Displays
    ASUS TUF Gaming VG289Q
    Screen Resolution
    3840x2160
    Hard Drives
    Samsung 990 Pro 2TB
    Samsung 980 Pro 2TB
    Samsung 970 Evo Plus 1TB
    Samsung 870 Evo 4TB
    Samsung T7 Touch 1TB
    PSU
    Asus ROG Strix 1000W
    Case
    Corsair D750 Airflow
    Cooling
    Noctua NH-D15S
    Keyboard
    Logitech G915 X (wired)
    Mouse
    Logitech G903 with PowerPlay charger
    Internet Speed
    900Mb/sec
    Browser
    Microsoft Edge
    Antivirus
    Windows Defender
Yeah, I just did a clean install on my fully qualified desktop (system specs) and BitLocker has not been invoked or auto enabled.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    Intel i9-9900K
    Motherboard
    Gigabyte Aorus Z390 Xtreme
    Memory
    32G (4x8) DDR4 Corsair RGB Dominator Platinum (3600Mhz)
    Graphics Card(s)
    Radeon (XFX MERC 310) RX 7900XT
    Sound Card
    Onboard (ESS Sabre HiFi using Realtek drivers)
    Monitor(s) Displays
    27-inch Eizo Color Edge - CG2700X
    Screen Resolution
    3840 x 2160
    Hard Drives
    5 Samsung SSD drives: 2X 970 NVME (512 & 1TB), 3X EVO SATA (2X 2TB, 1X 1TB)
    PSU
    EVGA Super Nova I000 G2 (1000 watt)
    Case
    Cooler Master H500M
    Cooling
    Corsair H115i Elite Capellix XT
    Keyboard
    Logitech Craft
    Mouse
    Logitech MX Master 3
    Internet Speed
    500mb Download. 11mb Upload
    Browser
    Microsoft Edge Chromium
    Antivirus
    Windows Security
    Other Info
    System used for gaming, photography, music, school.
  • Operating System
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 Carbon (Gen 12)
    CPU
    Intel Core Ultra 7 165U vPro® Processor
    Motherboard
    Vendor
    Memory
    32 GB LPDDR5X-6400MHz (Soldered)
    Graphics card(s)
    Intel Graphics
    Sound Card
    Onboard
    Monitor(s) Displays
    14" 2.8K OLED, Anti Reflection, Touch, HDR 500, 400 nits, 120Hz
    Screen Resolution
    2880 x 1800
    Hard Drives
    1 TB SSD M.2 2280 PCIe Gen4 Performance TLC Opal
    PSU
    Vendor
    Case
    Lenovo
    Cooling
    Vapor Chamber Cooling
    Mouse
    Touchpad: Haptic Touchpad
    Keyboard
    Backlit, Black with Fingerprint Reader and WWAN
    Internet Speed
    100MB
    Browser
    Edge Chromium
    Antivirus
    Windows Security
    Other Info
    202. Build Your Own laptop.
    vPro Certified Model: vPro Enterprise
I have regedit, but don't know what to look for. Any advice would be gratefully accepted. I also found "Bitlocker drive encryption service" in services which was active, I disabled it but it made no difference to the partitions locking every time the machine booted, it took an image restore for each partition to stop that nonsense.

My drive is a 1TB SSD, divided into three working partitions which Bitlocker had locked separately.

CP/M was never this much trouble.
Hi,
If I run across one I'll post it here but so far nothing
I do this for good measure not because I think it will activate on it's own.

ATM best way is to not install with win-11 new security requirements like uefi only boot/ gpt/ secure boot/ tpm
 

My Computer

System One

  • OS
    Win-7-10-11Pro's
    Computer type
    PC/Desktop
    Manufacturer/Model
    Acer 17" Nitro 7840sn/ 2x16gb 5600c40/ 4060/ stock 1tb-os/ 4tb sn850x
    CPU
    10900k & 9940x & 5930k
    Motherboard
    z490-Apex & x299-Apex & x99-Sabertooth
    Memory
    Trident-Z Royal 4000c16 2x16gb & Trident-Z 3600c16 4x8gb & 3200c14 4x8gb
    Graphics Card(s)
    Titan Xp & 1080ti FTW3 & evga 980ti gaming
    Sound Card
    Onboard Realtek x3
    Monitor(s) Displays
    1-AOC G2460PG 24"G-Sync 144Hz/ 2nd 1-ASUS VG248QE 24"/ 3rd LG 43" series
    Screen Resolution
    1920-1080 not sure what the t.v is besides 43" class scales from 1920-1080 perfectly
    Hard Drives
    2-WD-sn850x 4tb/ 970evo+500gb/ 980 pro 2tb.
    PSU
    1000p2 & 1200p2 & 850p2
    Case
    D450 x2 & 1 Test bench in cherry Entertainment center
    Cooling
    Custom water loops x3 with 2x mora 360mm rads only 980ti gaming air cooled
    Keyboard
    G710+x3
    Mouse
    Redragon x3
    Internet Speed
    xfinity gigabyte
    Browser
    Firefox
    Antivirus
    mbam pro
Interesting. I've read somewhere that new Laptops with Windows 11 Home with Modern Standby will come with Device Encryption on by default. Can't find the site now sorry. Possibly why you can't create a local account with Win Home during OOBE?

Also interesting is this,
' It is highly advised that you now back up the BitLocker recovery key used for Device Encryption to avoid any unwanted scenarios. If you’re ever asked for it to get access to your Windows disc, you’ll need to know this BitLocker recovery key.'
So Device Encryption uses Bitlocker key. From here:

 

My Computers

System One System Two

  • OS
    Win 11 Home & 🐥.
    Computer type
    Laptop
    Manufacturer/Model
    ACER Nitro AN16-41
    CPU
    AMD Ryzen™ 7 7735HS Processor 3.2Ghz
    Motherboard
    RB Sierra_PEH (FP7)
    Memory
    32 GB DDR5 4800MHz
    Graphics Card(s)
    NVIDIA GeForce RTX 4060 8GB GDDR6
    Monitor(s) Displays
    16" QHD+ 165Hz 16:10 IPS Technology
    Screen Resolution
    1920 X 1200
    Hard Drives
    Samsung 990 PRO 2TB
    PSU
    330 Watts
    Mouse
    Lenovo Bluetooth.
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    ACER NITRO
    CPU
    AMD Ryzen 7 5800H / 3.2 GHz
    Motherboard
    CZ Scala_CAS (FP6)
    Memory
    32 GB DDR4 SDRAM 3200 MHz
    Graphics card(s)
    NVIDIA GeForce RTX 3060 6 GB GDDR6 SDRAM
    Sound Card
    Realtek Audio. NVIDIA High Definition Audio
    Monitor(s) Displays
    15.6" LED backlight 1920 x 1080 (Full HD) 144 Hz
    Screen Resolution
    1920 x 1080 (Full HD)
    Hard Drives
    Samsung 970 Evo Plus 2TB NVMe M.2
    PSU
    180 Watt, 19.5 V
    Mouse
    Lenovo Bluetooth
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender

My Computer

System One

  • OS
    Windows 11 Home x64 Version 23H2 Build 22631.3447

My Computers

System One System Two

  • OS
    Win 11 Home & 🐥.
    Computer type
    Laptop
    Manufacturer/Model
    ACER Nitro AN16-41
    CPU
    AMD Ryzen™ 7 7735HS Processor 3.2Ghz
    Motherboard
    RB Sierra_PEH (FP7)
    Memory
    32 GB DDR5 4800MHz
    Graphics Card(s)
    NVIDIA GeForce RTX 4060 8GB GDDR6
    Monitor(s) Displays
    16" QHD+ 165Hz 16:10 IPS Technology
    Screen Resolution
    1920 X 1200
    Hard Drives
    Samsung 990 PRO 2TB
    PSU
    330 Watts
    Mouse
    Lenovo Bluetooth.
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    ACER NITRO
    CPU
    AMD Ryzen 7 5800H / 3.2 GHz
    Motherboard
    CZ Scala_CAS (FP6)
    Memory
    32 GB DDR4 SDRAM 3200 MHz
    Graphics card(s)
    NVIDIA GeForce RTX 3060 6 GB GDDR6 SDRAM
    Sound Card
    Realtek Audio. NVIDIA High Definition Audio
    Monitor(s) Displays
    15.6" LED backlight 1920 x 1080 (Full HD) 144 Hz
    Screen Resolution
    1920 x 1080 (Full HD)
    Hard Drives
    Samsung 970 Evo Plus 2TB NVMe M.2
    PSU
    180 Watt, 19.5 V
    Mouse
    Lenovo Bluetooth
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
Interesting. I've read somewhere that new Laptops with Windows 11 Home with Modern Standby will come with Device Encryption on by default. Can't find the site now sorry. Possibly why you can't create a local account with Win Home during OOBE?

Laptop coming from a factory (vendor) may very well have BitLocker or some other driver encryption scheme enabled by default. But those are "factory built" machines. For custom built machines, the option to enable or not is left to the end users.

I've not seen any of my custom built PC's running Windows 11 (Beta or RTM) have BitLocker automatically enabled when 11 is installed.

I also found that during my clean install of Windows 11 (RTM/MCT USB boot) on my old Windows 10 drive with BitLocker enabled, the install process complained that BitLocker was enabled (it was) and that I needed to either suspend or turn it off to be able to install to that drive. That once the OS install completed, BitLocker was not (and still not) enabled - that if I want BitLocker I have to enable it myself.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    Intel i9-9900K
    Motherboard
    Gigabyte Aorus Z390 Xtreme
    Memory
    32G (4x8) DDR4 Corsair RGB Dominator Platinum (3600Mhz)
    Graphics Card(s)
    Radeon (XFX MERC 310) RX 7900XT
    Sound Card
    Onboard (ESS Sabre HiFi using Realtek drivers)
    Monitor(s) Displays
    27-inch Eizo Color Edge - CG2700X
    Screen Resolution
    3840 x 2160
    Hard Drives
    5 Samsung SSD drives: 2X 970 NVME (512 & 1TB), 3X EVO SATA (2X 2TB, 1X 1TB)
    PSU
    EVGA Super Nova I000 G2 (1000 watt)
    Case
    Cooler Master H500M
    Cooling
    Corsair H115i Elite Capellix XT
    Keyboard
    Logitech Craft
    Mouse
    Logitech MX Master 3
    Internet Speed
    500mb Download. 11mb Upload
    Browser
    Microsoft Edge Chromium
    Antivirus
    Windows Security
    Other Info
    System used for gaming, photography, music, school.
  • Operating System
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 Carbon (Gen 12)
    CPU
    Intel Core Ultra 7 165U vPro® Processor
    Motherboard
    Vendor
    Memory
    32 GB LPDDR5X-6400MHz (Soldered)
    Graphics card(s)
    Intel Graphics
    Sound Card
    Onboard
    Monitor(s) Displays
    14" 2.8K OLED, Anti Reflection, Touch, HDR 500, 400 nits, 120Hz
    Screen Resolution
    2880 x 1800
    Hard Drives
    1 TB SSD M.2 2280 PCIe Gen4 Performance TLC Opal
    PSU
    Vendor
    Case
    Lenovo
    Cooling
    Vapor Chamber Cooling
    Mouse
    Touchpad: Haptic Touchpad
    Keyboard
    Backlit, Black with Fingerprint Reader and WWAN
    Internet Speed
    100MB
    Browser
    Edge Chromium
    Antivirus
    Windows Security
    Other Info
    202. Build Your Own laptop.
    vPro Certified Model: vPro Enterprise
Laptop coming from a factory (vendor) may very well have BitLocker or some other driver encryption scheme enabled by default. But those are "factory built" machines. For custom built machines, the option to enable or not is left to the end users.

I've not seen any of my custom built PC's running Windows 11 (Beta or RTM) have BitLocker automatically enabled when 11 is installed.

I also found that during my clean install of Windows 11 (RTM/MCT USB boot) on my old Windows 10 drive with BitLocker enabled, the install process complained that BitLocker was enabled (it was) and that I needed to either suspend or turn it off to be able to install to that drive. That once the OS install completed, BitLocker was not (and still not) enabled - that if I want BitLocker I have to enable it myself.
Yes - that's why I said new laptops with Windows 11 Home with Modern Standby will come with Device Security on by default.
 

My Computers

System One System Two

  • OS
    Win 11 Home & 🐥.
    Computer type
    Laptop
    Manufacturer/Model
    ACER Nitro AN16-41
    CPU
    AMD Ryzen™ 7 7735HS Processor 3.2Ghz
    Motherboard
    RB Sierra_PEH (FP7)
    Memory
    32 GB DDR5 4800MHz
    Graphics Card(s)
    NVIDIA GeForce RTX 4060 8GB GDDR6
    Monitor(s) Displays
    16" QHD+ 165Hz 16:10 IPS Technology
    Screen Resolution
    1920 X 1200
    Hard Drives
    Samsung 990 PRO 2TB
    PSU
    330 Watts
    Mouse
    Lenovo Bluetooth.
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    ACER NITRO
    CPU
    AMD Ryzen 7 5800H / 3.2 GHz
    Motherboard
    CZ Scala_CAS (FP6)
    Memory
    32 GB DDR4 SDRAM 3200 MHz
    Graphics card(s)
    NVIDIA GeForce RTX 3060 6 GB GDDR6 SDRAM
    Sound Card
    Realtek Audio. NVIDIA High Definition Audio
    Monitor(s) Displays
    15.6" LED backlight 1920 x 1080 (Full HD) 144 Hz
    Screen Resolution
    1920 x 1080 (Full HD)
    Hard Drives
    Samsung 970 Evo Plus 2TB NVMe M.2
    PSU
    180 Watt, 19.5 V
    Mouse
    Lenovo Bluetooth
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
Yes - that's why I said new laptops with Windows 11 Home with Modern Standby will come with Device Security on by default.
I have just clean installed W11 Pro using a USB made by the MCT on a laptop with Modern Standby. That too had bitlocker encrypted drives by default.

Oddly, at no time was I asked to save any key, nor did Control Panel say that bitlocker was turned on. The properties for C: however showed it was encrypted, and the command Manage-bde –off had Control Panel showing 'Decrypting...' for quite some time until it was done.

Actually, this PC had an OEM W10 Pro on it when I bought it, and that too was in the same state - bitlocker encrypted drives, but Control Panel still saying 'Turn on Bitlocker'.
 

My Computers

System One System Two

  • OS
    Windows 11 Home
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 3 A315-23
    CPU
    AMD Athlon Silver 3050U
    Memory
    8GB
    Graphics Card(s)
    Radeon Graphics
    Monitor(s) Displays
    laptop screen
    Screen Resolution
    1366x768 native resolution, up to 2560x1440 with Radeon Virtual Super Resolution
    Hard Drives
    1TB Samsung EVO 870 SSD
    Internet Speed
    50 Mbps
    Browser
    Edge, Firefox
    Antivirus
    Defender
    Other Info
    fully 'Windows 11 ready' laptop. Windows 10 C: partition migrated from my old unsupported 'main machine' then upgraded to 11. A test migration ran Insider builds for 2 months. When 11 was released on 5th October 2021 it was re-imaged back to 10 and was offered the upgrade in Windows Update on 20th October. Windows Update offered the 22H2 Feature Update on 20th September 2022. It got the 23H2 Feature Update on 4th November 2023 through Windows Update, and 24H2 on 3rd October through Windows Update by setting the Target Release Version for 24H2.

    My SYSTEM THREE is a Dell Latitude 5410, i7-10610U, 32GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro (and all my Hyper-V VMs).

    My SYSTEM FOUR is a 2-in-1 convertible Lenovo Yoga 11e 20DA, Celeron N2930, 8GB RAM, 256GB ssd. Unsupported device: currently running Win10 Pro, plus Win11 Pro RTM and Insider Dev, Beta, and RP 24H2 as native boot vhdx.

    My SYSTEM FIVE is a Dell Latitude 3190 2-in-1, Pentium Silver N5030, 8GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro, plus the Insider Beta, Dev, Canary, and Release Preview builds as a native boot .vhdx.
  • Operating System
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Dell Latitude E4310
    CPU
    Intel® Core™ i5-520M
    Motherboard
    0T6M8G
    Memory
    8GB
    Graphics card(s)
    (integrated graphics) Intel HD Graphics
    Screen Resolution
    1366x768
    Hard Drives
    500GB Crucial MX500 SSD
    Browser
    Firefox, Edge
    Antivirus
    Defender
    Other Info
    unsupported machine: Legacy bios, MBR, TPM 1.2, upgraded from W10 to W11 using W10/W11 hybrid install media workaround. In-place upgrade to 22H2 using ISO and a workaround. Feature Update to 23H2 by manually installing the Enablement Package. In-place upgrade to 24H2 using hybrid 23H2/24H2 install media. Also running Insider Beta, Dev, and Canary builds as a native boot .vhdx.

    My SYSTEM THREE is a Dell Latitude 5410, i7-10610U, 32GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro (and all my Hyper-V VMs).

    My SYSTEM FOUR is a 2-in-1 convertible Lenovo Yoga 11e 20DA, Celeron N2930, 8GB RAM, 256GB ssd. Unsupported device: currently running Win10 Pro, plus Win11 Pro RTM and Insider Dev, Beta, and RP 24H2 as native boot vhdx.

    My SYSTEM FIVE is a Dell Latitude 3190 2-in-1, Pentium Silver N5030, 8GB RAM, 512GB NVMe ssd, supported device running Windows 11 Pro, plus the Insider Beta, Dev, Canary, and Release Preview builds as a native boot .vhdx.
Yes - that's why I said new laptops with Windows 11 Home with Modern Standby will come with Device Security on by default.
Though I quoted you, I'm also addressing others as well as other concerns. But yes, I did say some of what I said :)
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    Intel i9-9900K
    Motherboard
    Gigabyte Aorus Z390 Xtreme
    Memory
    32G (4x8) DDR4 Corsair RGB Dominator Platinum (3600Mhz)
    Graphics Card(s)
    Radeon (XFX MERC 310) RX 7900XT
    Sound Card
    Onboard (ESS Sabre HiFi using Realtek drivers)
    Monitor(s) Displays
    27-inch Eizo Color Edge - CG2700X
    Screen Resolution
    3840 x 2160
    Hard Drives
    5 Samsung SSD drives: 2X 970 NVME (512 & 1TB), 3X EVO SATA (2X 2TB, 1X 1TB)
    PSU
    EVGA Super Nova I000 G2 (1000 watt)
    Case
    Cooler Master H500M
    Cooling
    Corsair H115i Elite Capellix XT
    Keyboard
    Logitech Craft
    Mouse
    Logitech MX Master 3
    Internet Speed
    500mb Download. 11mb Upload
    Browser
    Microsoft Edge Chromium
    Antivirus
    Windows Security
    Other Info
    System used for gaming, photography, music, school.
  • Operating System
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 Carbon (Gen 12)
    CPU
    Intel Core Ultra 7 165U vPro® Processor
    Motherboard
    Vendor
    Memory
    32 GB LPDDR5X-6400MHz (Soldered)
    Graphics card(s)
    Intel Graphics
    Sound Card
    Onboard
    Monitor(s) Displays
    14" 2.8K OLED, Anti Reflection, Touch, HDR 500, 400 nits, 120Hz
    Screen Resolution
    2880 x 1800
    Hard Drives
    1 TB SSD M.2 2280 PCIe Gen4 Performance TLC Opal
    PSU
    Vendor
    Case
    Lenovo
    Cooling
    Vapor Chamber Cooling
    Mouse
    Touchpad: Haptic Touchpad
    Keyboard
    Backlit, Black with Fingerprint Reader and WWAN
    Internet Speed
    100MB
    Browser
    Edge Chromium
    Antivirus
    Windows Security
    Other Info
    202. Build Your Own laptop.
    vPro Certified Model: vPro Enterprise
Thanks, I've found it now, and encryption is turned off on my machine so it really shouldn't have happened, but it seems that encryption does use Bitlocker recovery key and suggests Microsoft account is where to find it, which is where I did, during yesterday's panic, to restore the machine I use daily and rely on, which although I thought was well backed up was clearly not.

I don't know what to say, I really, really, don't want my drives to be encrypted, the mere thought of not being able to back up my data in the ways I have always done fills me with dread. I think I will have to investigate Linux or other alternatives if this is the way that Microsoft is going to behave. A personal computer is just that and the latest trends of the operating system deciding where information is stored and even encrypted is a complete anathema to me.

Thanks for the great forum, when I was in panic mode yesterday I was searching everywhere and found useful information here.

The way I was doing backups was to use Macrium reflect and three partitions, C: containing the OS, D: containing data and E: containing image backups of C:, with an external HDD containing backups of all my internal partitions, but on this occasion my external drive was a month out of date and I couldn't access my E: drive with the recent OS backups.
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    Asus Zenbook
    CPU
    Core i7
    Memory
    16Gb
    Hard Drives
    1TB SSD
I have just clean installed W11 Pro using a USB made by the MCT on a laptop with Modern Standby. That too had bitlocker encrypted drives by default.

Oddly, at no time was I asked to save any key, nor did Control Panel say that bitlocker was turned on. The properties for C: however showed it was encrypted, and the command Manage-bde –off had Control Panel showing 'Decrypting...' for quite some time until it was done.

Actually, this PC had an OEM W10 Pro on it when I bought it, and that too was in the same state - bitlocker encrypted drives, but Control Panel still saying 'Turn on Bitlocker'.
Device Encryption should be showing in Privacy and security and Bitlocker in the old control panel if it's Pro?
 

My Computers

System One System Two

  • OS
    Win 11 Home & 🐥.
    Computer type
    Laptop
    Manufacturer/Model
    ACER Nitro AN16-41
    CPU
    AMD Ryzen™ 7 7735HS Processor 3.2Ghz
    Motherboard
    RB Sierra_PEH (FP7)
    Memory
    32 GB DDR5 4800MHz
    Graphics Card(s)
    NVIDIA GeForce RTX 4060 8GB GDDR6
    Monitor(s) Displays
    16" QHD+ 165Hz 16:10 IPS Technology
    Screen Resolution
    1920 X 1200
    Hard Drives
    Samsung 990 PRO 2TB
    PSU
    330 Watts
    Mouse
    Lenovo Bluetooth.
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    ACER NITRO
    CPU
    AMD Ryzen 7 5800H / 3.2 GHz
    Motherboard
    CZ Scala_CAS (FP6)
    Memory
    32 GB DDR4 SDRAM 3200 MHz
    Graphics card(s)
    NVIDIA GeForce RTX 3060 6 GB GDDR6 SDRAM
    Sound Card
    Realtek Audio. NVIDIA High Definition Audio
    Monitor(s) Displays
    15.6" LED backlight 1920 x 1080 (Full HD) 144 Hz
    Screen Resolution
    1920 x 1080 (Full HD)
    Hard Drives
    Samsung 970 Evo Plus 2TB NVMe M.2
    PSU
    180 Watt, 19.5 V
    Mouse
    Lenovo Bluetooth
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
I think there may be two distinct issues here. Encrypted drives and locked drives. Mine were locked and unlocking was instantaneous on inputting the Bitlocker unlock code, whereas I think encryption and decryption is a lengthy process.
 
Last edited:

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    Asus Zenbook
    CPU
    Core i7
    Memory
    16Gb
    Hard Drives
    1TB SSD
Actually, this PC had an OEM W10 Pro on it when I bought it, and that too was in the same state - bitlocker encrypted drives, but Control Panel still saying 'Turn on Bitlocker'.

Are you "sure" the laptop isn't using another drive encryption scheme as BitLocker isn't the only scheme around (some laptop vendors ship with self encrypting drives)? The question also has to do with the fact that you say "Control Panel still saying 'Turn on Bitlocker".

Oddly, at no time was I asked to save any key, nor did Control Panel say that bitlocker was turned on. The properties for C: however showed it was encrypted, and the command Manage-bde –off had Control Panel showing 'Decrypting...' for quite some time until it was done.

And if that's the case, you probably didn't get a "Microsoft" warning cause BitLocker isn't in use (according to the control panel).

Bit of a guess on my end, but...
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    Intel i9-9900K
    Motherboard
    Gigabyte Aorus Z390 Xtreme
    Memory
    32G (4x8) DDR4 Corsair RGB Dominator Platinum (3600Mhz)
    Graphics Card(s)
    Radeon (XFX MERC 310) RX 7900XT
    Sound Card
    Onboard (ESS Sabre HiFi using Realtek drivers)
    Monitor(s) Displays
    27-inch Eizo Color Edge - CG2700X
    Screen Resolution
    3840 x 2160
    Hard Drives
    5 Samsung SSD drives: 2X 970 NVME (512 & 1TB), 3X EVO SATA (2X 2TB, 1X 1TB)
    PSU
    EVGA Super Nova I000 G2 (1000 watt)
    Case
    Cooler Master H500M
    Cooling
    Corsair H115i Elite Capellix XT
    Keyboard
    Logitech Craft
    Mouse
    Logitech MX Master 3
    Internet Speed
    500mb Download. 11mb Upload
    Browser
    Microsoft Edge Chromium
    Antivirus
    Windows Security
    Other Info
    System used for gaming, photography, music, school.
  • Operating System
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 Carbon (Gen 12)
    CPU
    Intel Core Ultra 7 165U vPro® Processor
    Motherboard
    Vendor
    Memory
    32 GB LPDDR5X-6400MHz (Soldered)
    Graphics card(s)
    Intel Graphics
    Sound Card
    Onboard
    Monitor(s) Displays
    14" 2.8K OLED, Anti Reflection, Touch, HDR 500, 400 nits, 120Hz
    Screen Resolution
    2880 x 1800
    Hard Drives
    1 TB SSD M.2 2280 PCIe Gen4 Performance TLC Opal
    PSU
    Vendor
    Case
    Lenovo
    Cooling
    Vapor Chamber Cooling
    Mouse
    Touchpad: Haptic Touchpad
    Keyboard
    Backlit, Black with Fingerprint Reader and WWAN
    Internet Speed
    100MB
    Browser
    Edge Chromium
    Antivirus
    Windows Security
    Other Info
    202. Build Your Own laptop.
    vPro Certified Model: vPro Enterprise
Are you "sure" the laptop isn't using another drive encryption scheme as BitLocker isn't the only scheme around (some laptop vendors ship with self encrypting drives)? The question also has to do with the fact that you say "Control Panel still saying 'Turn on Bitlocker".



And if that's the case, you probably didn't get a "Microsoft" warning cause BitLocker isn't in use (according to the control panel).

Bit of a guess on my end, but...
I was thinking the same as you can have Bitlocker and Drive encryption on Windows Pro with modern standby. :unsure:
 

My Computers

System One System Two

  • OS
    Win 11 Home & 🐥.
    Computer type
    Laptop
    Manufacturer/Model
    ACER Nitro AN16-41
    CPU
    AMD Ryzen™ 7 7735HS Processor 3.2Ghz
    Motherboard
    RB Sierra_PEH (FP7)
    Memory
    32 GB DDR5 4800MHz
    Graphics Card(s)
    NVIDIA GeForce RTX 4060 8GB GDDR6
    Monitor(s) Displays
    16" QHD+ 165Hz 16:10 IPS Technology
    Screen Resolution
    1920 X 1200
    Hard Drives
    Samsung 990 PRO 2TB
    PSU
    330 Watts
    Mouse
    Lenovo Bluetooth.
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    ACER NITRO
    CPU
    AMD Ryzen 7 5800H / 3.2 GHz
    Motherboard
    CZ Scala_CAS (FP6)
    Memory
    32 GB DDR4 SDRAM 3200 MHz
    Graphics card(s)
    NVIDIA GeForce RTX 3060 6 GB GDDR6 SDRAM
    Sound Card
    Realtek Audio. NVIDIA High Definition Audio
    Monitor(s) Displays
    15.6" LED backlight 1920 x 1080 (Full HD) 144 Hz
    Screen Resolution
    1920 x 1080 (Full HD)
    Hard Drives
    Samsung 970 Evo Plus 2TB NVMe M.2
    PSU
    180 Watt, 19.5 V
    Mouse
    Lenovo Bluetooth
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
I was thinking the same as you can have Bitlocker and Drive encryption on Windows Pro with modern standby. :unsure:

I just saw this verbiage in System Information telling my why BitLocker wasn't "auto enabled".....

Why no auto bitlocker.png

I "guess" if you have Modern Standby (I don't or it isn't enabled) so "maybe" that's why I (and many others) are not getting auto BitLocker?

BTW....
Device Encryption should be showing in Privacy and security and Bitlocker in the old control panel if it's Pro?

I can't seem to find any BitLocker info/settings in Privacy and security under Windows 11. Did I miss something?
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom built
    CPU
    Intel i9-9900K
    Motherboard
    Gigabyte Aorus Z390 Xtreme
    Memory
    32G (4x8) DDR4 Corsair RGB Dominator Platinum (3600Mhz)
    Graphics Card(s)
    Radeon (XFX MERC 310) RX 7900XT
    Sound Card
    Onboard (ESS Sabre HiFi using Realtek drivers)
    Monitor(s) Displays
    27-inch Eizo Color Edge - CG2700X
    Screen Resolution
    3840 x 2160
    Hard Drives
    5 Samsung SSD drives: 2X 970 NVME (512 & 1TB), 3X EVO SATA (2X 2TB, 1X 1TB)
    PSU
    EVGA Super Nova I000 G2 (1000 watt)
    Case
    Cooler Master H500M
    Cooling
    Corsair H115i Elite Capellix XT
    Keyboard
    Logitech Craft
    Mouse
    Logitech MX Master 3
    Internet Speed
    500mb Download. 11mb Upload
    Browser
    Microsoft Edge Chromium
    Antivirus
    Windows Security
    Other Info
    System used for gaming, photography, music, school.
  • Operating System
    Windows 11 Pro 23H2 (Build 22631.4391)
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkPad X1 Carbon (Gen 12)
    CPU
    Intel Core Ultra 7 165U vPro® Processor
    Motherboard
    Vendor
    Memory
    32 GB LPDDR5X-6400MHz (Soldered)
    Graphics card(s)
    Intel Graphics
    Sound Card
    Onboard
    Monitor(s) Displays
    14" 2.8K OLED, Anti Reflection, Touch, HDR 500, 400 nits, 120Hz
    Screen Resolution
    2880 x 1800
    Hard Drives
    1 TB SSD M.2 2280 PCIe Gen4 Performance TLC Opal
    PSU
    Vendor
    Case
    Lenovo
    Cooling
    Vapor Chamber Cooling
    Mouse
    Touchpad: Haptic Touchpad
    Keyboard
    Backlit, Black with Fingerprint Reader and WWAN
    Internet Speed
    100MB
    Browser
    Edge Chromium
    Antivirus
    Windows Security
    Other Info
    202. Build Your Own laptop.
    vPro Certified Model: vPro Enterprise
I just saw this verbiage in System Information telling my why BitLocker wasn't "auto enabled".....

View attachment 9805

I "guess" if you have Modern Standby (I don't or it isn't enabled) so "maybe" that's why I (and many others) are not getting auto BitLocker?

BTW....


I can't seem to find any BitLocker info/settings in Privacy and security under Windows 11. Did I miss something?
Bitlocker is in the old control panel. Apparently Device encryption is here in a modern standby machine,

1634069019918.png

From How to Turn On or Off Device Encryption on Windows 11 - Website for Students ..
and
 

My Computers

System One System Two

  • OS
    Win 11 Home & 🐥.
    Computer type
    Laptop
    Manufacturer/Model
    ACER Nitro AN16-41
    CPU
    AMD Ryzen™ 7 7735HS Processor 3.2Ghz
    Motherboard
    RB Sierra_PEH (FP7)
    Memory
    32 GB DDR5 4800MHz
    Graphics Card(s)
    NVIDIA GeForce RTX 4060 8GB GDDR6
    Monitor(s) Displays
    16" QHD+ 165Hz 16:10 IPS Technology
    Screen Resolution
    1920 X 1200
    Hard Drives
    Samsung 990 PRO 2TB
    PSU
    330 Watts
    Mouse
    Lenovo Bluetooth.
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
  • Operating System
    Windows 11
    Computer type
    Laptop
    Manufacturer/Model
    ACER NITRO
    CPU
    AMD Ryzen 7 5800H / 3.2 GHz
    Motherboard
    CZ Scala_CAS (FP6)
    Memory
    32 GB DDR4 SDRAM 3200 MHz
    Graphics card(s)
    NVIDIA GeForce RTX 3060 6 GB GDDR6 SDRAM
    Sound Card
    Realtek Audio. NVIDIA High Definition Audio
    Monitor(s) Displays
    15.6" LED backlight 1920 x 1080 (Full HD) 144 Hz
    Screen Resolution
    1920 x 1080 (Full HD)
    Hard Drives
    Samsung 970 Evo Plus 2TB NVMe M.2
    PSU
    180 Watt, 19.5 V
    Mouse
    Lenovo Bluetooth
    Internet Speed
    500 Mbps
    Browser
    Edge
    Antivirus
    Defender
I have BitLocker on two of my HP laptops that I updated to Windows 11

Using the following to Disable and Re-Enable BitLocker worked extremely well.

Before the update:

To Disable use the following:

Use an Elevated Command Prompt

Enter the following and press enter:

Manage-bde -Protectors -Disable C: -RebootCount 15


Note: "In the command, the -RebootCount allows you to specify how many times your computer can restart before BitLocker will re-enable automatically. You can use values 0 through 15, while zero suspends BitLocker until you resume the protection manually."


After the update:

Resuming

Use an Elevated Command Prompt

Enter the following and press enter:

Manage-bde -Protectors -Enable C:


You can check the BitLocker status

Manage-bde -Status C:

It will even tell you the percentage progress while encrypting or decrypting.
 

My Computer

System One

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    HP/Envy-17T
    CPU
    Intel Core i7 @ 1.80GHz
    Motherboard
    HP - 8485 (U3E1)
    Memory
    16gb
    Graphics Card(s)
    Intel UHD Graphics 620 and NVIDIA GeForce MX150
    Sound Card
    Realtek High Definition Audio / Intel Display Audio / NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
    Monitor(s) Displays
    Generic PnP Monitor on Intel UHD Graphics 620
    Screen Resolution
    1536x864 pixels
    Hard Drives
    KBG30ZMV256G TOSHIBA (SSD)
    ST1000LM049-2GH172 (SSD)
    PSU
    HP Standard
    Cooling
    HP CoolSense
    Keyboard
    Standard PS/2 Keyboard
    Mouse
    Anker
    Internet Speed
    95Mbps
    Browser
    FireFox
    Antivirus
    WebRoot
Interesting topic - just trying to understand it all and have some questions so I can decide what action to take if any...
(I'm not ready for BitLocker yet but Device Encryption seems to be a subset of it and may be a bit more manageable?)

Win 11 Pro v21H2 b,22000.258 is happily running on my 'unsupported' Gen 7 Laptop after a clean install using the MC Bootable USB process to a Local Account.

After stumbling across this thread, I checked my settings and they are:

1634093845460.png

  • Can I take from that, that if I had clean installed with a MS Account, then it would have gone ahead and Device Encrypted my Disk and required a key (similar to BitLocker) to be setup etc? and if I log in with a MS Account now it will go ahead and start Device Encryption?
  • Can I also take it that the (separate process) BitLocker is NOT turned on by default.

Also, There seems to be some inconsistency in reporting whether BitLocker is on or off..

Control Panel: (Shows C: as not activated)

1634095847998.png


Disk Management: (Shows C: as BitLocker Encrypted)

1634094914284.png

Macrium Reflect 8: (Shows/reports the C: drive is unlocked?)

1634096315682.png

Thanks, ashleyg.
 

Attachments

  • 1634094726835.png
    1634094726835.png
    2.5 KB · Views: 2
  • 1634094817513.png
    1634094817513.png
    3.5 KB · Views: 1
  • 1634095192062.png
    1634095192062.png
    30.3 KB · Views: 1

My Computer

System One

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    HP EliteBook 840 G4
    CPU
    Intel Core i7-7600U
    Memory
    8GB
    Graphics Card(s)
    Integrated
    Sound Card
    Integrated
    Screen Resolution
    1920 x 1080
    Hard Drives
    SSD
    Other Info
    TPM 2.0 enabled
    "Your PC does not meet the minimum hardware requirements recommended for windows 11, and there may be issues and bugs that impact your experience."

Latest Support Threads

Back
Top Bottom