Forum Discussion

DLock01's avatar
DLock01
Copper Contributor
May 07, 2024

BitLocker backup into Entra ID

We are in the process of setting up Hybrid Join. When I try to backup the bitlocker key to Entra ID I get the following error in the event viewer 

Failed to backup BitLocker Drive Encryption recovery information for volume C: to your Azure AD.
TraceId: *****************************

Error: Unknown HResult Error code: 0x80072efe. 

When I run the backup powershell script on the computer i get the following error: 

I have logged in with my FQDN on the computer. I show the computer is compliant and CO-Managed. 

I have also blocked the GPO that was handling the bitlocker from being pushed to the computer. I have restarted and ran gpupdate /force multiple time. Any assistance would be helpfull. 

I am unable to find anything online to resolve this issue. 

  • rahuljindal-MVP's avatar
    rahuljindal-MVP
    Bronze Contributor
    What is the status of BitLocker encryption on the device? Have you checked the BitLocker API event viewer log?
    • DLock01's avatar
      DLock01
      Copper Contributor
      The status of the BitLocker Encryption shows Fully Encrypted.
      manage-bde -status
      BitLocker Drive Encryption: Configuration Tool version 10.0.19041
      Copyright (C) 2013 Microsoft Corporation. All rights reserved.

      Disk volumes that can be protected with
      BitLocker Drive Encryption:
      Volume C: [Windows]
      [OS Volume]

      Size: 117.44 GB
      BitLocker Version: 2.0
      Conversion Status: Fully Encrypted
      Percentage Encrypted: 100.0%
      Encryption Method: XTS-AES 128
      Protection Status: Protection On
      Lock Status: Unlocked
      Identification Field: Unknown
      Key Protectors:
      TPM
      Numerical Password


      The event Viewer log shows
      Failed to backup BitLocker Drive Encryption recovery information for volume C: to your Azure AD.
      TraceId: {***************************}
      Error: Unknown HResult Error code: 0x80072efe
      • rahuljindal-MVP's avatar
        rahuljindal-MVP
        Bronze Contributor
        Anything in leading up to the eventvwr log you shared? “The event Viewer log shows
        Failed to backup BitLocker Drive Encryption recovery information for volume C: to your Azure AD.
        TraceId: {***************************}
        Error: Unknown HResult Error code: 0x80072efe”

Resources