Microsoft Bitlocker Administration and Monitoring

From RiceFamily Wiki
Jump to: navigation, search

Important Request Numbers

  • RITM1029531 (Test)
  • RITM1029532 (Test)
  • TASK1461055 (Firewall Rules) (Test)
  • RITM1118176 (Production)
  • RITM1118177 (Production)
  • RITM1135236 (Production SSL)
  • RITM1135238 (Production SSL)
  • KB0024590 - RunBook for MBAM
  • RITM1290879 - Monitoring Request
  • KB0024847 - How to Link an OU to MBAM with a GPO
  • RITM5645257 - New Environment
  • RITM5704865 - SHA256 SSL for server

Documentation

Microsoft Documentation

YouTube Videos

My Documentation

Internet Documentation

Installation Process

Request Servers

Install Pre-Requesites

  • Install Powershell 3.0
  • Install Microsoft Server 2008R2 or later with Service Packs
    • Need to include SQL_Latin1_General_CP1_CI_AS collation.
    • Install Database Engine
    • Install Reporting Services
    • Install Client Tools Connectivity
    • Install Management Tools - Complete

MBAM Installation and Configuration

Client Installation

Important Notes

  • According to How to Deploy the MBAM Client to Desktop or Laptop Computers
    • "The MBAM Client does not start BitLocker Drive Encryption actions if a remote desktop protocol connection is active. All remote console connections must be closed and a user must be logged on to a physical console session before BitLocker Drive Encryption begins."
  • MBAM Clients will communicate with the server via port 443