VMware

This Question is Answered

2 "helpful" answers available (6 pts)
1 2 Previous Next 18 Replies Last post: Aug 12, 2007 3:15 PM by JimmyW   Go to original post

Re: Enabling Bitlocker in Vista VM

15. Jul 25, 2007 11:36 AM in response to: JimmyW
Click to view ClayMon's profile Hot Shot 142 posts since
Mar 15, 2004
True. However, those of us who must examine and test
Vista systems have no choice, but to be conversant in
its intracacies.

Microsoft has stated that one can legally run any version of Vista in a VM as long as it is an MSDN license used for development (and I assuming also testing) purposes, but I haven't read anywhere that says this one can do Bitlocker with in a VM with such a license.

http://blogs.zdnet.com/Bott/?p=160

Well, with the one Ace license we get with Workstation 6 then we can run an encrypted VM running nearly any OS, at least as I understand it.

Re: Enabling Bitlocker in Vista VM

16. Jul 26, 2007 5:36 AM in response to: ClayMon
Click to view bastewar's profile Lurker 2 posts since
Jul 25, 2007
I could post the steps to do it, although I'm not entirely sure that would be allowed on the forums. Maybe an admin can answer that?

Re: Enabling Bitlocker in Vista VM

17. Aug 11, 2007 9:52 PM in response to: bastewar
Click to view jpmorgan's profile Lurker 4 posts since
Jan 12, 2007
I wont post the steps, BUT there are seveal links i used to figure it out,
to use on a REAL (non-virtual) NON TPM computer. You can take it from there, as i did.

http://elssblog.blogspot.com/

http://www.tweakvista.com/article39148.aspx

If you have Ultimate or Enterprise Vista you can get a TOOL that will do ALL
the work of setting up the partitions..etc.

It was simple enough..

Below is Cut/Paste from one of the URLs. This on a Blog, NOT my work
or instructions by any means.

------------------------------------------------------------------------------------------

Now what if you do not have a TPM, but you would like to use Bitlocker Drive Encryption?
No problem, BDE is supported on machines without TPM. The only tricky part is that you cannot enable it using the GUI. In Control Panel (where you would normally enable Bitlocker), you'll see the following:


So, how do you enable bitlocker then?
You will have to use manage-bde, a cscript tool that works with Bitlocker through the WMI interface.

This is what you do:

Open a Command Prompt as administrator! (Rightclick the cmd shortcut in the Start menu and choose "Run as administrator".)
cscript manage-bde.wsf -on C: -sk h: -rp -rk f:
Command Explanation
-on C: Enable BDE on drive C:
-sk h: Create a startup key and save it on drive h:
Drive h: will normally be a USB key
-rp Create a recovery password
-rk f: Create a recovery key and save it on drive f:
Drive f: can be a USB key, hard drive, network drive

Save the numerical recovery password in a save place!
Insert your USB drive.
Restart your computer for a hardware test.
Use manage-bde -status to check whether the test was successful. If it was, encryption will begin. You can use the same command to keep track of the encryption progress.

VMware Beta Programs

Want to be Considered for Future Beta Programs?

Learn More

VMware Developer

Download SDKs, APIs, videos,
training, and more in the Developer community.

Learn More

Developer
Sample Code

Increase your developer productivity with VMware API sample code.

Learn More

VMworld
Sessions & Labs

Online access to the latest VMworld Sessions & Labs and online services.

Learn more

Purchase PSO Credits Online

Purchase credits to redeem training and consulting services online.

Buy Now

Community Hardware Software

View reported configurations or report your own.

Learn More

Only VMware ... Delivers Nexus 1000V

Ensure consistent, policy-based network capabilities to virtual machines across your data center.

Learn More

Communities