How to Enable BitLocker with TPM for Automatic PC Unlocking on Windows 11 Startup

|

|

The article outlines the process to configure BitLocker to auto-unlock a PC at startup via Trusted Platform Module (TPM) in Windows 11, instead of requiring the insertion of a USB drive with a startup key and a PIN. This involves changing settings in the BitLocker Drive Encryption section of the Control Panel.

This article describes steps to set up BitLocker to automatically unlock a PC at startup via TPM in Windows 11.

BitLocker helps protect your data on your computer so only authorized users can access it. In addition, new files created on a BitLocker-enabled drive will also be protected.

BitLocker will automatically check the PC at startup to ensure the computer has not been tampered with, including BIOS changes and other security risks.

By default, a PC with a TPM chip, which BitLocker recognizes, will automatically unlock the PC during startup. However, users can add security measures at startup to protect encrypted data.

If you have set up BitLocker to require users to insert a USB drive that contains a startup key and a PIN at startup before the computer starts, the steps below show you how to revert to the default behavior.

Disable BitLocker requirements for USB and PIN at startup on a PC with Windows 11

As described above, If you have set up BitLocker to require users to insert a USB drive that contains a startup key and a PIN at startup before the computer starts, here’s how to disable that.

With BitLocker enabled on your OS drive, open the Control Panel and browse to the BitLocker page.

Control Panel\System and Security\BitLocker Drive Encryption

Then click the link, “Change how drive is unlocked at startup.”

windows 11 change how dirve is unlocked at startup
Windows 11 changes how the drive is unlocked at the startup

Next, select the “Let BitLocker automatically unlock my drive” link to continue.

windows 11 let bitlocker automatically unlock my drive link
Windows 11 let BitLocker automatically unlock my drive link

Click Finish on the next page.

windows 11 let bitlocker automatically unlock my drive finish
Windows 11 let BitLocker automatically unlock my drive finish

BitLocker’s default behavior of automatically unlocking the PC OS via TPM will begin when you restart your computer.

That’s it.

Conclusion:

This post showed you how to disable BitLocker, requiring a PIN and USB flash drive with a BitLocker key at startup on Windows 11.

Please use the comment form below if you find any errors above or have something to add.

Like this:



Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.