New Features
Expand | ||
---|---|---|
| ||
Windows 11 is supported |
Expand | ||
---|---|---|
| ||
It’s possible to encrypt only the operating system drive or all fixed drives |
Expand | ||
---|---|---|
| ||
Integration with Active Directory doesn't require service accounts or group policies |
Expand | ||
---|---|---|
| ||
Multiple Recovery passwords can be saved in Active Directory or CapaInstaller or both |
Expand | ||
---|---|---|
| ||
Encryption can be started without waiting for it to finish, if you want to encrypt drives during your endpoint deployment process |
Expand | ||
---|---|---|
| ||
Multiple domains and standalone endpoints are supported |
Expand | ||
---|---|---|
| ||
Encryption and Decryption status is presented on the dynamic install screen |
Expand | ||
---|---|---|
| ||
It’s possible to suspend the operating system drive, if you need to perform an operation that requires BitLocker to be deactivated |
Expand | ||
---|---|---|
| ||
It’s possible to activate BitLocker Recovery Mode, in case an endpoint has been stolen or is otherwise lost |
Improvements
Expand | ||
---|---|---|
| ||
Logging has been improved with a simple and a standard log |
Expand | ||
---|---|---|
| ||
The Check PreRequisites package is now optional |
Expand | ||
---|---|---|
| ||
...
Prerequisites
Expand | ||
---|---|---|
| ||
TPM version 2.0 or later |
...
Technical Stuff
Expand | ||
---|---|---|
| ||
To make troubleshooting easier, all actions are command line based, using PowerShell or manage-bde.exe |
Expand | ||
---|---|---|
| ||
Recovery key values can be masked to improve security |
Expand | ||
---|---|---|
| ||
Issues related to the TPM chip are presented at the top of the log file and in the CapaInstaller console |
Expand | ||
---|---|---|
| ||
CapaBitLocker is fully supported by the CapaSystems Cloud Updater, and we can update the scripting library automatically |