1.2.4.2.1.4 Set 'Recovery Key' to 'Allow 256-bit recovery key'

Information

This policy setting allows you to control how BitLocker-protected fixed data drives are recovered in the absence
of the required credentials.

Solution

Make sure Set 'Recovery Key' is set to 'Allow 256-bit recovery key'

See Also

https://workbench.cisecurity.org/files/17

Item Details

Category: CONTINGENCY PLANNING, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|CP-10(6), 800-53|SC-28(1), CSCv6|10.3, CSCv6|13.2

Plugin: Windows

Control ID: 125850232908e339d77c78b4433fbffb213aadd59f1d52807cba6fac4e680167