From 5836e1546aa5b8dd7dcabb71cfff419a96ee579d Mon Sep 17 00:00:00 2001 From: ManikaDhiman Date: Wed, 7 Aug 2019 07:45:54 +0530 Subject: [PATCH] Added dev feedback --- windows/client-management/mdm/bitlocker-csp.md | 15 +++++++-------- 1 file changed, 7 insertions(+), 8 deletions(-) diff --git a/windows/client-management/mdm/bitlocker-csp.md b/windows/client-management/mdm/bitlocker-csp.md index 1c6f65c8bb..deb52e3e8a 100644 --- a/windows/client-management/mdm/bitlocker-csp.md +++ b/windows/client-management/mdm/bitlocker-csp.md @@ -116,17 +116,16 @@ Status of OS volumes and encryptable fixed data volumes are checked with a Get o Encryptable fixed data volumes are treated similarly to OS volumes. However, fixed data volumes must meet additional criteria to be considered encryptable: -* The fixed data volume must have supported firmware (BIOS or UEFI). -* It must not be a dynamic volume. -* It must not be a recovery partition. -* It must not be a hidden volume. -* It must not be a system partition. -* It must not be backed by virtual storage. -* It must not have a reference in the BCD store. +- It must not be a dynamic volume. +- It must not be a recovery partition. +- It must not be a hidden volume. +- It must not be a system partition. +- It must not be backed by virtual storage. +- It must not have a reference in the BCD store. The following list shows the supported values: -- 0 (default) – Disable. If the policy setting is not set or is set to 0, the device's enforcement status will not be checked. In other words, the policy will not enforce encryption and it will not decrypt encrypted volumes. +- 0 (default) – Disable. If the policy setting is not set or is set to 0, the device's enforcement status will not be checked. The policy will not enforce encryption and it will not decrypt encrypted volumes. - 1 – Enable. The device's enforcement status will be checked. Setting this policy to 1 will trigger encryption of all drives (silently or non-silently based on [AllowWarningForOtherDiskEncryption](#allowwarningforotherdiskencryption) policy). If you want to disable this policy use the following SyncML: