Hi there,

So for context, I work at an MSP and for one of our customers we did a full AD migration to Azure AD and Azure AD joined all the devices.

After this migration was completed we decommissioned the local AD server.

Now the story begins, there was an old laptop with some data on, that they want to access. BUT, the laptop keeps asking for the Bitlocker key. We stored all bitlocker keys in AD and since the laptop isn’t AAD joined, so the key is not stored in AAD.

Anyone has had a similar issue or the experience to tell me where to find the key? Thanks in advance.

EDIT: the laptop is a windows 10

11 Spice ups

You could try to access to the files on the BL drive using a live Linux. See: Open Bitlocker Drive on Linux - Quick & Easy

What have you got on backup?

If you have an old backup image of the domain controller or active directory backup you can maybe restore that somewhere.

I haven’t seen any tools to hack bitlocker encryption but maybe they exist.

1 Spice up

Certainly you have a backup of a domain controller, right?

Restore domain controller from backup. Then retrieve key.

Option B. Add backup of domain controller to standard process when doing domain migration.

2 Spice ups

The bitlocker messages we see have a blue background that contains a URL that could be accessed from another pc. Not sure if thats what you see. We are in an Azure environment and that may be why.

The OP doesn’t have the key. I’m not sure how this would help.

1 Spice up

Well we had. Migration happened like 3 months ago so we recently removed the back-ups to free up some space. 2 days later we got the call about the laptop… Something about Murphy and a stupid law I guess.