A Windows Vista forum. Vista Banter

Welcome to Vista Banter.

You are currently viewing our boards as a guest which gives you limited access to view most discussions, articles and access our other FREE features. By joining our free community you will have access to ask questions and reply to others posts, upload your own photos and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact contact support.

Go Back   Home » Vista Banter forum » Microsoft Windows Vista » Security and Windows Vista
Site Map Home Register Authors List Search Today's Posts Mark Forums Read Web Partners

Security and Windows Vista A forum for discussion on security issues with Windows Vista. (microsoft.public.windows.vista.security)

BitLocker, TPM, and Gateway



 
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old September 15th 06, 04:12 PM posted to microsoft.public.windows.vista.security
APA
external usenet poster
 
Posts: 17
Default BitLocker, TPM, and Gateway

Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and the
"manage-bde.wsf" script will not recongize the chip. All other devices are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA
  #2 (permalink)  
Old September 16th 06, 01:16 AM posted to microsoft.public.windows.vista.security
Jamie Hunter [MS]
external usenet poster
 
Posts: 39
Default BitLocker, TPM, and Gateway

What is the message the UI is reporting?
Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
news
Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA


  #3 (permalink)  
Old September 16th 06, 01:48 AM posted to microsoft.public.windows.vista.security
APA
external usenet poster
 
Posts: 17
Default BitLocker, TPM, and Gateway

Jamie,

Thanks for the reply. TPM.MSC reports that I need a TPM 1.2 chip to
configure. As I stated ealier, my computer has TPM 1.2 chip and it is listed
in Device Manager under "Security Devices" as a Broadcom TPM. The properties
specify it as 1.2 using MS drivers.

Thanks,

APA

"Jamie Hunter [MS]" wrote:

What is the message the UI is reporting?
Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
news
Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA


  #4 (permalink)  
Old September 16th 06, 01:20 PM posted to microsoft.public.windows.vista.security
abckid
external usenet poster
 
Posts: 32
Default BitLocker, TPM, and Gateway

Hi,

Did you try to install the original Broadcom TPM drivers rather than MS
drivers ? It may help it recognize !

abckid.

"APA" wrote:

Jamie,

Thanks for the reply. TPM.MSC reports that I need a TPM 1.2 chip to
configure. As I stated ealier, my computer has TPM 1.2 chip and it is listed
in Device Manager under "Security Devices" as a Broadcom TPM. The properties
specify it as 1.2 using MS drivers.

Thanks,

APA

"Jamie Hunter [MS]" wrote:

What is the message the UI is reporting?
Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
news
Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA


  #5 (permalink)  
Old September 16th 06, 02:04 PM posted to microsoft.public.windows.vista.security
John Barnett MVP
external usenet poster
 
Posts: 69
Default BitLocker, TPM, and Gateway

Is the bitlocker window giving the message that you need TPM - i'm not using
Vista as i write this, but i think it is in yellow across the top of the
window.

Also is there a link to actually enable bitlocker?

I know that, by default, bitlocker is disabled for USB devices. I don't have
TPM on my machine so i have to use a USB drive key. I'm not even saying this
will work in your case but, if there is no link to enable bitlocker on the
bitlocker window page visit my website http://xphelpandsupport.mvps.org
Click the Vista Faq button and then click on question 4, 'enable bitlocker
encryption' It may just be that it is also disabled by default for TPM, i
don't actually know, but see if enabling it from group policy (as advised in
question 4 on my site) rectifies the problem.

--
John Barnett MVP
Associate Expert
http://xphelpandsupport.mvps.org

The information in this mail/post is supplied "as is". No warranty of any
kind, either expressed or implied, is made in relation to the accuracy,
reliability or content of this mail/post. The Author shall not be liable for
any direct, indirect, incidental or consequential damages arising out of the
use of, or inability to use, information or opinions expressed in this
mail/post..


"APA" wrote in message
news
Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA



  #6 (permalink)  
Old September 16th 06, 06:30 PM posted to microsoft.public.windows.vista.security
Jamie Hunter [MS]
external usenet poster
 
Posts: 39
Default BitLocker, TPM, and Gateway

I'll talk to my co-workers on Monday, see if anyone has an idea what may be
going on. Can you also try the "manage-bde" command-line and see if the
reported error is the same? Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
...
Jamie,

Thanks for the reply. TPM.MSC reports that I need a TPM 1.2 chip to
configure. As I stated ealier, my computer has TPM 1.2 chip and it is
listed
in Device Manager under "Security Devices" as a Broadcom TPM. The
properties
specify it as 1.2 using MS drivers.

Thanks,

APA

"Jamie Hunter [MS]" wrote:

What is the message the UI is reporting?
Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
news
Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM
support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to
Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA



  #7 (permalink)  
Old September 17th 06, 03:18 PM posted to microsoft.public.windows.vista.security
APA
external usenet poster
 
Posts: 17
Default BitLocker, TPM, and Gateway

I did try the Broadcom drivers for XP. I can't find any Vista drivers. At
any rate, the XP drivers did not work.

Thanks for the reply.

"abckid" wrote:

Hi,

Did you try to install the original Broadcom TPM drivers rather than MS
drivers ? It may help it recognize !

abckid.

"APA" wrote:

Jamie,

Thanks for the reply. TPM.MSC reports that I need a TPM 1.2 chip to
configure. As I stated ealier, my computer has TPM 1.2 chip and it is listed
in Device Manager under "Security Devices" as a Broadcom TPM. The properties
specify it as 1.2 using MS drivers.

Thanks,

APA

"Jamie Hunter [MS]" wrote:

What is the message the UI is reporting?
Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
news Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA

  #8 (permalink)  
Old September 17th 06, 03:21 PM posted to microsoft.public.windows.vista.security
APA
external usenet poster
 
Posts: 17
Default BitLocker, TPM, and Gateway

Jamie,

Here's the output from 'manage-bde'

C:\Windows\System32cscript manage-bde.wsf -tpm
Microsoft (R) Windows Script Host Version 5.7
Copyright (C) Microsoft Corporation. All rights reserved.

ERROR: Missing required parameter.

C:\Windows\System32

Thanks,

APA

"Jamie Hunter [MS]" wrote:

I'll talk to my co-workers on Monday, see if anyone has an idea what may be
going on. Can you also try the "manage-bde" command-line and see if the
reported error is the same? Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
...
Jamie,

Thanks for the reply. TPM.MSC reports that I need a TPM 1.2 chip to
configure. As I stated ealier, my computer has TPM 1.2 chip and it is
listed
in Device Manager under "Security Devices" as a Broadcom TPM. The
properties
specify it as 1.2 using MS drivers.

Thanks,

APA

"Jamie Hunter [MS]" wrote:

What is the message the UI is reporting?
Thanks!
-
Jamie Hunter [MS]

"APA" wrote in message
news Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM
support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to
Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA


  #9 (permalink)  
Old September 17th 06, 03:53 PM posted to microsoft.public.windows.vista.security
APA
external usenet poster
 
Posts: 17
Default BitLocker, TPM, and Gateway

John,

I enabled all of the settings except the one to backup keys to AD. I don't
want to go that far yet. With the other settings enabled, there is no
mention of the TPM in the BitLocker Control Panel applet. There is a yellow
box with text saying my drive configuration isn't correct for BitLocker use.
I don't have a second partition yet.

I'm encouraged by the changes made in GPedit.msc. I will reinstall Vista to
properly configure the partitions and try it again. Thanks for the help,
John.


"John Barnett MVP" wrote:

Is the bitlocker window giving the message that you need TPM - i'm not using
Vista as i write this, but i think it is in yellow across the top of the
window.

Also is there a link to actually enable bitlocker?

I know that, by default, bitlocker is disabled for USB devices. I don't have
TPM on my machine so i have to use a USB drive key. I'm not even saying this
will work in your case but, if there is no link to enable bitlocker on the
bitlocker window page visit my website http://xphelpandsupport.mvps.org
Click the Vista Faq button and then click on question 4, 'enable bitlocker
encryption' It may just be that it is also disabled by default for TPM, i
don't actually know, but see if enabling it from group policy (as advised in
question 4 on my site) rectifies the problem.

--
John Barnett MVP
Associate Expert
http://xphelpandsupport.mvps.org

The information in this mail/post is supplied "as is". No warranty of any
kind, either expressed or implied, is made in relation to the accuracy,
reliability or content of this mail/post. The Author shall not be liable for
any direct, indirect, incidental or consequential damages arising out of the
use of, or inability to use, information or opinions expressed in this
mail/post..


"APA" wrote in message
news
Hi,

Can anyone provide a suggestion to get BitLocker enabled with TPM support
on
a Gateway computer? I have Vista RC1 installed on a Gateway M280. The
M280
has a Broadcom TPM 1.2 chip that is installed properly according to Device
Manager.

However, the TPM managment console, BitLocker Control Panel applet, and
the
"manage-bde.wsf" script will not recongize the chip. All other devices
are
working properly.

Again, any help or suggestions would be appreciated.

Regards,

APA




  #10 (permalink)  
Old September 19th 06, 10:29 PM posted to microsoft.public.windows.vista.security
Kim
external usenet poster
 
Posts: 104
Default BitLocker, TPM, and Gateway



"Jamie Hunter [MS]" wrote:

I'll talk to my co-workers on Monday, see if anyone has an idea what may be
going on. Can you also try the "manage-bde" command-line and see if the
reported error is the same? Thanks!
-


Jamie,

What did the co-workers have to say?

I seem to have a very similar problem. My platform is a DELL Lattitude X1
with a Broadcom TPM v1.2 chip. I've partitioned the harddrive, installed
Vista RC1 as per the "Windows BitLocker Drive Encryption Step-by-Step Guide”
from September 2006.

Device Manager tells me that I have (under Security Devices) a ”Bradcom
Trusted Platform Module (A1), v1.2” that is working properly. Yet when I go
to the BitLocker Control Panel, I get told "A TPM was not found" (in the
yellow box). If I try "manage-bde.wsf -tpm -TurnOn" I get

ERROR: A compatible Trusted Platform Module (TPM) was not detected.

In the BIOS I have two items related to TPM: TPM Security (I've set it to
ON) and TPM Activation. If I try to enable the latter I am told I have to
load host drivers first, but this seems to be where I am stuck.

I thinking maybe I have to roll back to XP and use teh DELL/Bradcom supplied
utilities and drivers to get teh thing initialized, but was hping ther was a
more straghtforward way. Right now I feel I'm in a Catch-22.

Regards

- Kim
 




Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:12 PM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.Search Engine Optimization by vBSEO 3.0.0 RC6
Copyright 2004-2012 Vista Banter.
The comments are property of their posters.