BitLocker

Windows Embedded Standard allows you to encrypt your disk drive so it only works together with your hardware.
BitLocker protects against data theft or exposure on devices that are stolen, and offers more secure data deletion when computers are decommissioned.

 

 

Why BitLocker?

BitLocker allows you to encrypt the entire Windows operating system volume and any other volumes in your device. All files including system files, swap and hibernation file are encrypted.
Together with a Trusted Platform Module (TPM) version 1.2, BitLocker uses the enhanced security capabilities of the TPM to help ensure that your data is accessible only if the computer's boot components appear unaltered and the encrypted disk is located in the original computer.

How to access the encrypted volume?

  • TPM only
    BitLocker will automatically allow access to the disk if it is located in the original PC where it has been locked to the TPM.
  • TPM + PIN
    BitLocker will only unlock the disk if the password has been entered correctly and the disk is in the original PC.
  • TPM + PIN + USB Key
    BitLocker will only unlock the disk if the password has been entered correctly and the USB drive with the keyfile is connected and the disk is in the original PC.
  • TPM + USB Key
    BitLocker will only unlock the disk if the USB drive with the keyfile is connected and the disk is in the original PC.
  • USB Key
    BitLocker will only unlock the disk if the USB drive with the keyfile is connected.
  • Password only
    BitLocker will only unlock the disk if the password has been entered correctly.

BitLocker To Go

Windows Embedded Standard 7 has BitLocker To Go integrated which allows to use BitLocker also on removable devices such as a USB drive.