BitLocker Recovery starts when OEMs perform firmware updates for TPM 1.2

Symptoms

For Trusted Platform Module (TPM) 1.2, Windows does not know if the system is going through a firmware update. In this situation, the computer reboots into BitLocker Recovery.  

https://technet.microsoft.com/en-us/library/ff829848(v=ws.11).aspx

To suspend protection, run the following command line:

manage-bde -protectors -disable c:
To resume protection, run the following:

manage-bde -protectors -enable c:

Workaround

For IT managers who are performing firmware updates for TPM 1.2 through Windows Update, make sure that you suspend BitLocker before you run the updates. This prevents BitLocker Recovery from starting. 

More Information

Use TPM 2.0, as PCR 7 performs all these measurements automatically.
Properties

Article ID: 3184518 - Last Review: Aug 18, 2016 - Revision: 1

Feedback