Bitlocker - Add the BitLocker Drive Encryption Administration Utilities

You can read more about Bitlocker deployment reading these old blogs posts:

Programs - Bitlocker how to implement in your organization

http://www.alessandromazzanti.com/2014/11/programs-bitlocker-how-to-implement-in.html

Server - BitLocker: Planning and Policies

http://www.alessandromazzanti.com/2014/03/server-bitlocker-planning-and-policies.html

Windows 7 - How to utilize Bitlocker without TPM

http://www.alessandromazzanti.com/2012/11/windows-7-utilizzare-bitlocker-senza-tpm.html

If you published Bitlocker key on Active Directory, other than procedure itself (schema extension if  your AD is not compatible)

Microsoft - Determine Microsoft Domain controller Schema Version

Server - Commands to verify Domain Controller/Domain Status, schema version, move 5 PDC roles, export DHCP

You must install snap-in to manage tpm key stored in Active directory, here they are procedure

The BitLocker Drive Encryption Administration Utilities are added as features via Server Manager (or Windows PowerShell):
  1. On DC01, log on as CONTOSO\Administrator, and, using Server Manager, click Add roles and features.
  2. On the Before you begin page, click Next.
  3. On the Select installation type page, select Role-based or feature-based installation, and click Next.
  4. On the Select destination server page, select DC01.contoso.com and click Next.
  5. On the Select server roles page, click Next.
  6. On the Select features page, expand Remote Server Administration Tools, expand Feature Administration Tools, select the following features, and then click Next:
    1. BitLocker Drive Encryption Administration Utilities
    2. BitLocker Drive Encryption Tools
    3. BitLocker Recovery Password Viewer
  7. On the Confirm installation selections page, click Install and then click Close.
Figure 3

Figure 2

[more details https://technet.microsoft.com/en-us/library/mt297542(v=vs.85).aspx ]

[update 2016.12.31]

You should be aware that TrueCrypt development was no longer maintained/updated  since 2014.


Several security bugs have been not resolved.

You fan review this article about some alternatives that I summarize them in this article too.

Here they are Truecrypt alternatives (from my side I use, normally, 2. and 7. options):
  1. VeraCrypt You can find a full list of improvements and corrections that VeraCrypt made on TrueCrypt here. It is open source and free.
  2. Bitlocker no encrypted containers ability and not open source.
  3. DiskCryptor supports encryption of external devices including hard drives, USB drives, CDs, and DVDs
  4. CipherShed
  5. FileVault 2 Apple’s answer to Bitlocker, no encrypted containers ability and not open source.
  6. LUKS
  7. SafeHouse Explorer – 3.01 Portable