1970

Prev Next

Issue:

If a Bitlocker-encrypted device is in the process of decrypting one or more partitions, e.g. by executing Run: manage-bde -off E: or by electing to decrypt E: in SecureDoc Control Center

1 - iI the device is rebooted while the decryption is in progress, then 
2 - Once the user logs in again at SecureDoc Pre-Boot, the user can 
3 - Wait for partition E to be fully decrypted.

If the user then:  

4 - Reboots the device again, and 
5 - Logs in again at SecureDoc Pre-Boot 

The device will not automatically be re-encrypted, even if the SecureDoc policy for the device indicates it should remain encrypted. 

This issue appears to occur ONLY when the device is rebooted in mid-decryption of Bitlocker-encrypted partition(s). 

Work-around:  Customers are recommended to ensure that any devices are on mains power during decryption, to ensure (for example) that a laptop is not running on battery power during a potentially lengthy decryption process, where it might exhaust the battery and shut down/crash, requiring a reboot mid-decryption.  
If it should occur that the device ends up un-encrypted, then please re-initiate full encryption as soon as possible and allow the device to complete encryption.