Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security & DevOps Insights

  • Home
  • About
  • Advertise With US
  • Reviews
  • Contact
  • Toggle search form
Home » Windows » Unable to find my BitLocker Recovery Key in AD
  • Continuous Deployment Pipeline Using AWS CodePipeline
    Setup a Continuous Deployment Pipeline with AWS CodePipeline AWS/Azure/OpenShift
  • images 2
    How to configure and use Pleasant Password RDP SSO Password Manager
  • sql stuck
    How to uninstall Microsoft SQL Server Management Studio Oracle/MSSQL/MySQL
  • troubleshooting Active Directory Replication
    How to troubleshoot Active Directory Replication issues Network | Monitoring
  • Telegram
    Integrate a WordPress site with WP Telegram Network | Monitoring
  • Trellix configurations after ePo setup
    ePO Server Settings: Trellix ePO AD integration and ENS Agents Installation Security | Vulnerability Scans and Assessment
  • maxresdefault 2
    How to uninstall Applications with PowerShell Script Scripts
  • Prevent the saving of RDP Credentials
    Prevent users from saving RDP Credentials on Windows 11 Windows

Unable to find my BitLocker Recovery Key in AD

Posted on 23/11/202209/07/2025 Christian By Christian No Comments on Unable to find my BitLocker Recovery Key in AD
BitLocker

BitLocker is a Microsoft encryption product designed to protect user data on a computer. If there is a problem with BitLocker, the BitLocker recovery mode will be prompted. If you do not have a working recovery key for the BitLocker command prompt, you will not be able to access the computer. In this article, you will learn about “Unable to find my BitLocker Recovery Key in AD”. Please see these guides: Find saved Wi-Fi Passwords in Windows 10 and 11, and how to fix RDP Users are unable to change Passwords.

BitLocker encryption is often intentionally enabled by or on behalf of a user with full administrator access to your device. This user can be you, another user, or an organization that manages your device.

The BitLocker encryption process occurs in the background and often goes unnoticed by users until a recovery event occurs. If you wish to Disable BitLocker,

Also, see how to correctly disable Microsoft BitLocker Administration and Monitoring encrypted devices, how to view BitLocker Disk Encryption Status in Windows, how to query MBAM to display the report for BitLocker Recovery for a specified period of time, and   how to determine why an MBAM protected device is non-compliant.

Why was this BitLocker Recovery Key mode Prompted?

Note: For Dell devices, Dell BIOS updates suspend BitLocker before flashing, so a BitLocker recovery event cannot occur due to the firmware update. There are a number of reasons why the BitLocker recovery mode will be prompted. Some of these are as follows

But for some other device types, a BIOS update can trigger a BitLocker recovery event because the PCR changes between when Windows is running and when the BIOS is updated.

If the computer enters recovery mode, it is likely because an external drive is connected because the boot drive enumeration is changed. I will be covering various reasons for the BitLocker recovery prompt in another guide. Here is a guide on how to deploy MBAm client as part of Windows deployment process.

If the recovery key is lost, there is no other way to unlock the drive. To get the computer back up and running, reinstalling Windows is the only option (this will result in the loss of all data and configurations of the encrypted hard drive).

Storage options for BitLocker recovery keys

Recovery keys can be saved in different ways depending on the version of Windows installed. Before we proceed in resolving this issue. You must have previously saved your BitLocker recovery key in one of these locations below. Here is a guide on how and where to find your BitLocker recovery key in Windows.

  • Microsoft account
  • On a printout
  • USB flash drive
  • Azure Active Directory account.
  • Copied and saved in a text file on another PC. You can remotely connect to the PC and view the text file from another device. Make sure that each backed-up recovery key is accessible from another computer or phone. You can access a remote PC this way without remotely connecting to it.
\\techPC\c$\Users\Administrator\Desktop

Also, if you are using MBAM to manage BitLocker. This will be saved in the MBAM database and you will be able to query the database via the Help Desk or Advanced help desk. Also via the self-service portal. You can determine if you have MBAM installed from the following link. 

Here is a guide on how to backup existing and new BitLocker recovery keys to Active Directory using a simple script. And how to fix the missing BitLocker Recovery Tab in Active Directory Users and Computers.

Access the BitLocker Recovery Tab in the Active Directory

Additionally, if you have configured the BitLocker recovery keys to be saved to Active Directory. You will also be able to find your keys there. 

If you have enabled BitLocker for a device, this will be found under the BitLocker Recovery Tab as shown below.

needthetools

If you have the keys saved in AD, you will require Domain Admin rights to view this and also install the BitLocker Drive Encryption Administration Utilities on a Server.

I do not have a BitLocker Recovery Key Saved (Not in my Microsoft account too)

But if you do not have a working recovery key for the BitLocker command prompt. You will not be able to access the computer. Please see MDT Warning: Unable to set working directory, the application returned an unexpected code 2, Unable to execute: The application GUID not found in the application list, and how to Mount remote directory using sshfs.

The BitLocker Setup process forces the creation of a recovery key at the time of activation, and if you are unable to find a required BitLocker recovery key, you’ll need to reinstall your device.

Reinstalling your device removes all files or have it re-installed entirely via the WDS and MDT. Here is a guide on how to Install ADK, MDT, and WDS: Deploy Windows images via Microsoft Deployment Toolkit and Windows Deployment Services. 

FAQs

Why should you delete the BDEDrive partition via MDT and Command Prompt?

If Bitlocker never will be used on the Windows PC, the BDEDrive can be removed using the following procedure below.

BDE partition can be outright disabled if you have no intentions of utilizing BitLocker in the future. add that to your customsettings.ini to disable it: DoNotCreateExtraPartition = YES

How can I create a Bitlocker partition on a device without one?

Open an elevated command window and run “BdeHdCfg.exe -target default”. It will respond by creating the partition or notifying you that the computer’s hard drive is already properly configured.

I hope you found this blog post helpful on Unable to find my BitLocker Recovery Key in AD. Please let me know in the comment session if you have any questions.

5/5 - (1 vote)

Thank you for reading this post. Kindly share it with others.

  • Click to share on X (Opens in new window) X
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Telegram (Opens in new window) Telegram
  • Click to share on WhatsApp (Opens in new window) WhatsApp
  • Click to share on Pocket (Opens in new window) Pocket
  • Click to share on Mastodon (Opens in new window) Mastodon
  • Click to share on Bluesky (Opens in new window) Bluesky
  • Click to share on Threads (Opens in new window) Threads
  • Click to share on Nextdoor (Opens in new window) Nextdoor
Windows Tags:Bitlocker, BitLocker Recovery Keys, BitLocker Status, Microsoft Windows, Windows 10, Windows 11, Windows Server 2016

Post navigation

Previous Post: An account with the same name exists in Active Directory: Re-using the account was blocked by a security policy
Next Post: Find saved Wi-Fi Passwords in Windows 10 and 11

Related Posts

  • print driver
    How to update Printer Drivers on your Windows device Windows
  • Install and report or install or shutdown with BitLocker
    BitLocker Windows Update Shutdown or Reboot option behavior Windows
  • banner
    How to hide Folders and Files from Search Results in Windows Windows
  • vtpm 1
    Enable vTPM and BitLocker HyperV VM: Fix the device that cannot use a TPM module Virtualization
  • Featured image System Tray icons
    How to Fix System Tray Icons not showing in Taskbar on Windows 11 Windows
  • banner 1
    How to fix Windows Microsoft Store not opening Windows

More Related Articles

print driver How to update Printer Drivers on your Windows device Windows
Install and report or install or shutdown with BitLocker BitLocker Windows Update Shutdown or Reboot option behavior Windows
banner How to hide Folders and Files from Search Results in Windows Windows
vtpm 1 Enable vTPM and BitLocker HyperV VM: Fix the device that cannot use a TPM module Virtualization
Featured image System Tray icons How to Fix System Tray Icons not showing in Taskbar on Windows 11 Windows
banner 1 How to fix Windows Microsoft Store not opening Windows

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

sysadmin top30a

  • Continuous Deployment Pipeline Using AWS CodePipeline
    Setup a Continuous Deployment Pipeline with AWS CodePipeline AWS/Azure/OpenShift
  • images 2
    How to configure and use Pleasant Password RDP SSO Password Manager
  • sql stuck
    How to uninstall Microsoft SQL Server Management Studio Oracle/MSSQL/MySQL
  • troubleshooting Active Directory Replication
    How to troubleshoot Active Directory Replication issues Network | Monitoring
  • Telegram
    Integrate a WordPress site with WP Telegram Network | Monitoring
  • Trellix configurations after ePo setup
    ePO Server Settings: Trellix ePO AD integration and ENS Agents Installation Security | Vulnerability Scans and Assessment
  • maxresdefault 2
    How to uninstall Applications with PowerShell Script Scripts
  • Prevent the saving of RDP Credentials
    Prevent users from saving RDP Credentials on Windows 11 Windows

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,836 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

Active Directory AWS Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Server 2016

Copyright © 2025 TechDirectArchive

 

Loading Comments...
 

You must be logged in to post a comment.