1.2.4.2.3.13 Set 'Save BitLocker recovery information to AD DS for removable data drives' to 'False'

Information

This policy setting allows you to control how BitLocker-protected removable data drives are recovered in the
absence of the required credentials.

Solution

Make sure 'Save BitLocker recovery information to AD DS for removable data drives' is set to 'False'

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-28(1), CSCv6|10.3, CSCv6|13.2

Plugin: Windows

Control ID: 90139b062c57319a02dd79ad4cd250ba83f754d35f30712b5d271d83c6acc497