CapaBitLocker v4.0 - Release Notes
New Features
Windows 11 is supported
It’s possible to encrypt only the operating system drive or all fixed drives
Integration with Active Directory doesn't require service accounts or group policies
Multiple Recovery passwords can be saved in Active Directory or CapaInstaller or both
Encryption can be started without waiting for it to finish, if you want to encrypt drives during your endpoint deployment process
Multiple domains and standalone endpoints are supported
Encryption and Decryption status is presented on the dynamic install screen
It’s possible to suspend the operating system drive, if you need to perform an operation that requires BitLocker to be deactivated
It’s possible to activate BitLocker Recovery Mode, in case an endpoint has been stolen or is otherwise lost
Improvements
Logging has been improved with a simple and a standard log
The Check PreRequisites package is now optional
Prerequisites
TPM version 2.0 or later
Technical Stuff
To make troubleshooting easier, all actions are command line based, using PowerShell or manage-bde.exe
Recovery key values can be masked to improve security
Issues related to the TPM chip are presented at the top of the log file and in the CapaInstaller console
CapaBitLocker is fully supported by the CapaSystems Cloud Updater, and we can update the scripting library automatically