Windows Vista Forums
Vista Forums Home Join Vista Forums Windows 7 Forum Vista Tutorials Tags
Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks.

Go Back   Vista Forums > Vista Newsgroups > Vista security

Vista - BitLocker question

Reply
 
Old 10-03-2007   #1 (permalink)
Martin X.


 
 

BitLocker question

Hello,



If I want to switch from using a startup key to TPM or vice versa, do I need
to decrypt the volume first or can I just disable BitLocker, then make the
switch after re-enabling BitLocker?



I'm planning to test this out today, but each encryption/decryption takes
about an hour. (I should have made my test volume smaller to speed that up,
but oh well . . .)



Also, how secure is BitLocker? Has anyone cracked it yet? Thanks.


--
Regards,
Martin X.
MCSA: M



My System SpecsSystem Spec
Old 10-03-2007   #2 (permalink)
Steve Riley [MSFT]


 
 

Re: BitLocker question

No need to decrypt then re-encrypt. You can use the command-line interface
to change the protection types. Run an elevated command prompt, switch to
%WINDIR%\system32, and run this command:

cscript manage-bde.wsf -protectors -?

You'll see that you can add and delete protectors. To add one, look at this:

cscript manage-bde.wsf -protectors -add -?

To delete one, look at this:

cscript manage-bde.wsf -protectors -delete -?


To answer your other question, the algorithm is 128-bit AES with an Elephant
diffuser (search it out if you're curious). It hasn't been cracked. You
might also be interested to know that, despite persistent rumors, there is
no back door:
http://blogs.technet.com/steriley/ar...ocker-too.aspx

--
Steve Riley
steve.riley@xxxxxx
http://blogs.technet.com/steriley
http://www.protectyourwindowsnetwork.com


"Martin X." <martin@xxxxxx> wrote in message
news:usGa3VcBIHA.1212@xxxxxx
Quote:

> Hello,
>
>
>
> If I want to switch from using a startup key to TPM or vice versa, do I
> need
> to decrypt the volume first or can I just disable BitLocker, then make the
> switch after re-enabling BitLocker?
>
>
>
> I'm planning to test this out today, but each encryption/decryption takes
> about an hour. (I should have made my test volume smaller to speed that
> up,
> but oh well . . .)
>
>
>
> Also, how secure is BitLocker? Has anyone cracked it yet? Thanks.
>
>
> --
> Regards,
> Martin X.
> MCSA: M
>
>
My System SpecsSystem Spec
Reply

Thread Tools


Similar Threads
Thread Forum
Bitlocker Question Vista General
Bitlocker Question? Vista security
Windows Vista BitLocker Question! Vista General
BitLocker Question Vista General
BitLocker key change question Vista security


Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46