
BitLocker automatic device encryption hardware requirementsīitLocker automatic device encryption is enabled when: BitLocker automatic device encryption is not enabled with local accounts, in which case BitLocker can be manually enabled using the BitLocker Control Panel. Until that, protection is suspended and data is not protected. However, protection is enabled (armed) only after users sign in with a Microsoft Account or an Azure Active Directory account. Note: BitLocker automatic device encryption starts during Out-of-box (OOBE) experience.

BitLocker automatic device encryptionīitLocker automatic device encryption uses BitLocker drive encryption technology to automatically encrypt internal drives after the user completes the Out Of Box Experience (OOBE) on Modern Standby or HSTI-compliant hardware. This additional system partition can be used to host Windows Recovery Environment (RE) and OEM tools (provided by the OEM), so long as the partition still meets the 250 MB free space requirement.įor more information see, and Hard Drives and Partitions.
