Windows Vista Forums
Vista Forums Home Join Vista Forums Webcasts Vista Tutorials Tags

Welcome to Vista Forums we are your forum to discuss Windows Vista x64 and x86 systems. Whether you need help or just want to post an idea you have on Vista, this is the forum for you.
Register at Vista forums...the world biggest Windows Vista resource Join Vista Forums Now

Go Back   Vista Forums > Vista Newsgroups > Vista security

[BitLocker:] One USB key for more than one computer

Update your Vista Drivers Update Your Drivers Now!!
Closed Thread
 
Thread Tools Display Modes
Old 02-03-2007   #1 (permalink)
Thomas D.
Guest


 

[BitLocker:] One USB key for more than one computer

Hello,

let's assume I have got more than one computer using Windows Vista and
BitLocker. Because my computer don't have TPM 1.2 or better devices or I
would like to use TPM+PIN+USB-key I need an USB key.

Do I need to use as many USB keys as computer I have or can I store as many
BitLocker keys as I want on that single USB key?

Thanks...

My System SpecsSystem Spec
Old 02-04-2007   #2 (permalink)
Jonathan Schwartz 2
Guest


 

RE: [BitLocker:] One USB key for more than one computer

Hello Thomas D.,

First, a TPM Module is -not- absolutely necessary.

Second, must have one TPM+PIN+USB-key for each HDD that has BitLocker
Activated. <(that statement is greatly condensed!)

Respectfully expressed, it seems too apparent that if you read 1st) Vista's
"Help and Support" Files, including, 2nd) Vista's new "Start Search"
(immediately above Vista's "Start Button") Field (just type your request)
also, Microsoft's online Search, and (tied for 1st) explore Vista's "Welcome
Center" and very easily you will learn more that ever could you imagine !

Vista presents a new learning curve for (not young first time computer
users) only experienced computer users.

Happy Learning to You,
--
Windows Vista
Become Part of The Legacy!



"Thomas D." wrote:

> Hello,
>
> let's assume I have got more than one computer using Windows Vista and
> BitLocker. Because my computer don't have TPM 1.2 or better devices or I
> would like to use TPM+PIN+USB-key I need an USB key.
>
> Do I need to use as many USB keys as computer I have or can I store as many
> BitLocker keys as I want on that single USB key?
>
> Thanks...

My System SpecsSystem Spec
Old 02-04-2007   #3 (permalink)
Thomas D.
Guest


 

RE: [BitLocker:] One USB key for more than one computer

Thanks for your reply!

"Jonathan Schwartz 2" wrote:
> Second, must have one TPM+PIN+USB-key for each HDD that has BitLocker
> Activated. <(that statement is greatly condensed!)


Did I understand you correctly, that I need one USB memory device to store
each BitLocker USB key for each computer (If I own 3 computer using
BitLocker, I need 3 USB memory devices)?

Regards
My System SpecsSystem Spec
Old 02-04-2007   #4 (permalink)
Paul Adare
Guest


 

RE: [BitLocker:] One USB key for more than one computer

In article <72FF4DFD-2112-4A3D-9AD7-F02B308B5FE1@microsoft.com>,
in the microsoft.public.windows.vista.security news group, =?
Utf-8?B?Sm9uYXRoYW4gU2Nod2FydHogMg==?= <JonathanSchwartz2
@discussions.microsoft.com> says...

> Hello Thomas D.,
>
> First, a TPM Module is -not- absolutely necessary.
>
> Second, must have one TPM+PIN+USB-key for each HDD that has BitLocker
> Activated. <(that statement is greatly condensed!)


This is wrong. In the first place, you can't currently use both
a TPM with a PIN and store the encryption key on a USB disk. The
TPM+PIN+USB feature is being looked at for Vista SP1. Secondly,
if you're using a USB device to store the key, then you do not
need a separate USB device for each key. You can store multiple
keys on a single USB device.

<snip>


--
Paul Adare
MVP - Windows - Virtual Machine
http://www.identit.ca
"The English language, complete with irony, satire, and sarcasm,
has survived for centuries without smileys. Only the new crop of
modern computer geeks finds it impossible to detect a joke that
is not clearly labeled as such."
Ray Shea
My System SpecsSystem Spec
Old 02-04-2007   #5 (permalink)
Paul Adare
Guest


 

RE: [BitLocker:] One USB key for more than one computer

In article <B7671BFC-A904-4FE6-AD97-D9C4AC8614B7@microsoft.com>,
in the microsoft.public.windows.vista.security news group, =?
Utf-8?B?VGhvbWFzIEQu?= <ThomasD@discussions.microsoft.com>
says...

> Did I understand you correctly, that I need one USB memory device to store
> each BitLocker USB key for each computer (If I own 3 computer using
> BitLocker, I need 3 USB memory devices)?
>


No, this is not true. The person who replied to your post is
wrong and while he keeps switching his posting ID, he
consistently posts incorrect information to this news group.
In your case you can certainly use a single USB device.

--
Paul Adare
MVP - Windows - Virtual Machine
http://www.identit.ca
"The English language, complete with irony, satire, and sarcasm,
has survived for centuries without smileys. Only the new crop of
modern computer geeks finds it impossible to detect a joke that
is not clearly labeled as such."
Ray Shea
My System SpecsSystem Spec
Old 02-04-2007   #6 (permalink)
Thomas D.
Guest


 

RE: [BitLocker:] One USB key for more than one computer

"Paul Adare" wrote:
> Secondly, if you're using a USB device to store the key, then you do not
> need a separate USB device for each key. You can store multiple
> keys on a single USB device.


Thank you Paul! That answered my question.
My System SpecsSystem Spec
Old 02-11-2007   #7 (permalink)
Alun Jones [MS-MVP - Windows Security]
Guest


 

Re: [BitLocker:] One USB key for more than one computer

"Paul Adare" <padare@newsguy.com> wrote in message
news:MPG.202fc3d9eacff16998a3d7@msnews.microsoft.com...
> In article <72FF4DFD-2112-4A3D-9AD7-F02B308B5FE1@microsoft.com>,
> in the microsoft.public.windows.vista.security news group, =?
> Utf-8?B?Sm9uYXRoYW4gU2Nod2FydHogMg==?= <JonathanSchwartz2
> @discussions.microsoft.com> says...
>
>> Hello Thomas D.,
>>
>> First, a TPM Module is -not- absolutely necessary.
>>
>> Second, must have one TPM+PIN+USB-key for each HDD that has BitLocker
>> Activated. <(that statement is greatly condensed!)

>
> This is wrong. In the first place, you can't currently use both
> a TPM with a PIN and store the encryption key on a USB disk. The
> TPM+PIN+USB feature is being looked at for Vista SP1. Secondly,
> if you're using a USB device to store the key, then you do not
> need a separate USB device for each key. You can store multiple
> keys on a single USB device.



Please tell me they're also working on "PIN+USB" for those of us without a
TPM in our existing laptops.

I'm _so_ not going to tell my corporate masters that they need to replace
several hundred laptops over the coming year before we implement Vista, not
because they can't run Vista, but because Vista's implementation of
BitLocker doesn't let them use a PIN without a TPM.

Alun.
~~~~
--
Texas Imperial Software | Web: http://www.wftpd.com/
23921 57th Ave SE | Blog: http://msmvps.com/alunj/
Woodinville WA 98072-8661 | WFTPD, WFTPD Pro are Windows FTP servers.
Fax/Voice +1(425)807-1787 | Try our NEW client software, WFTPD Explorer.


My System SpecsSystem Spec
Old 02-11-2007   #8 (permalink)
Rock
Guest


 

Re: [BitLocker:] One USB key for more than one computer

"Alun Jones [MS-MVP - Windows Security]" <alun@texis.invalid> wrote

> "Paul Adare" <padare@newsguy.com> wrote


>> <JonathanSchwartz2> says...
>>
>>> Hello Thomas D.,
>>>
>>> First, a TPM Module is -not- absolutely necessary.
>>>
>>> Second, must have one TPM+PIN+USB-key for each HDD that has BitLocker
>>> Activated. <(that statement is greatly condensed!)

>>
>> This is wrong. In the first place, you can't currently use both
>> a TPM with a PIN and store the encryption key on a USB disk. The
>> TPM+PIN+USB feature is being looked at for Vista SP1. Secondly,
>> if you're using a USB device to store the key, then you do not
>> need a separate USB device for each key. You can store multiple
>> keys on a single USB device.

>
> Please tell me they're also working on "PIN+USB" for those of us without a
> TPM in our existing laptops.
>
> I'm _so_ not going to tell my corporate masters that they need to replace
> several hundred laptops over the coming year before we implement Vista,
> not because they can't run Vista, but because Vista's implementation of
> BitLocker doesn't let them use a PIN without a TPM.


Yes bitlocker works with a PIN and USB. You don't need TPM, but the BIOS
has to support recognizing the USB flash drive as it boots. Set it up using
method 3 in this link.

http://technet.microsoft.com/en-us/w.../aa905089.aspx

--
Rock [MS-MVP User/Shell]

My System SpecsSystem Spec
Old 02-11-2007   #9 (permalink)
Paul Adare
Guest


 

Re: [BitLocker:] One USB key for more than one computer

In article <uso4$PiTHHA.5060@TK2MSFTNGP02.phx.gbl>, in the
microsoft.public.windows.vista.security news group, Rock
<Rock@nospam.net> says...

> Yes bitlocker works with a PIN and USB. You don't need TPM, but the BIOS
> has to support recognizing the USB flash drive as it boots. Set it up using
> method 3 in this link.
>
> http://technet.microsoft.com/en-us/w.../aa905089.aspx
>


Sorry, but that isn't what Alun was asking for and doesn't
provide you with a PIN. All that does is to store the encryption
key on the USB device, no PIN involved.

--
Paul Adare
MVP - Windows - Virtual Machine
http://www.identit.ca
"The English language, complete with irony, satire, and sarcasm,
has survived for centuries without smileys. Only the new crop of
modern computer geeks finds it impossible to detect a joke that
is not clearly labeled as such."
Ray Shea
My System SpecsSystem Spec
Old 02-11-2007   #10 (permalink)
Rock
Guest


 

Re: [BitLocker:] One USB key for more than one computer

"Paul Adare" <padare@newsguy.com> wrote

> Rock says...
>
>> Yes bitlocker works with a PIN and USB. You don't need TPM, but the BIOS
>> has to support recognizing the USB flash drive as it boots. Set it up
>> using
>> method 3 in this link.
>>
>> http://technet.microsoft.com/en-us/w.../aa905089.aspx
>>

>
> Sorry, but that isn't what Alun was asking for and doesn't
> provide you with a PIN. All that does is to store the encryption
> key on the USB device, no PIN involved.


Ah, sorry about that, I misinterpreted.

--
Rock [MS-MVP User/Shell]

My System SpecsSystem Spec
Closed Thread

Thread Tools
Display Modes



Similar Threads
Thread Thread Starter Forum Replies Last Post
Restored Factory Settings on Laptop that had BitLocker - Now want to do bitlocker again Blake Mengotto Vista General 0 08-24-2008 03:39 PM
Bitlocker sync with XP computer on network waterguy Vista security 3 11-15-2007 02:36 AM
Bitlocker ; Do I need it If? PCfixinman Vista security 3 07-12-2007 11:34 PM
BitLocker. Eugene Pinero Vista security 5 05-08-2007 01:37 PM
Bitlocker killed my computer - no really! David Vista General 17 02-19-2007 05:42 PM


Vistax64.com is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media 2005-2008

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51