Does Bitlocker really encrypt?

Onceler

Golden Member
Feb 28, 2008
1,262
0
71
I mean you can change the PW after the volume is encrypted so it can't be using the password to encrypt.
 

Savatar

Senior member
Apr 21, 2009
230
1
76
Yes, Bitlocker isn't based on user passwords though. It protects from users viewing the hard drive contents from Live CD/DVDs or by taking it out and trying to read the content in another computer. It encrypts the Windows volume - so naturally, it doesn't protect the data after you are booted into the operating system, though. This all happens on the fly with device-specific encryption keys that are generated.

Here is an overview about how Bitlocker works: http://windows.microsoft.com/en-us/windows-vista/bitlocker-drive-encryption-overview
 

RampantAndroid

Diamond Member
Jun 27, 2004
6,591
3
81
Savatar is right on; once the OS begins to boot the volumes are open to Windows itself. You cannot however remove the drive from the machine and read it. You need to either enable the TPM on your machine and put the key in there, or manually type in a key on boot every boot.
 

RampantAndroid

Diamond Member
Jun 27, 2004
6,591
3
81
I should have clarified, I meant non OS disks

It'll be the same deal; be it the OS drive, non OS drive or even a USB stick, bitlocker will encrypt and requires a passcode that either is in the TPM or you type in.

Go ahead and load a live CD and try to view the volume - it won't be accessible.

Beyond that, I don't know what you're asking.
 
Last edited:

RampantAndroid

Diamond Member
Jun 27, 2004
6,591
3
81
http://en.wikipedia.org/wiki/BitLocker_Drive_Encryption

BitLocker does not contain an intentionally built-in backdoor; without a backdoor there is no way for law enforcement to have a guaranteed passage to the data on the user's drives that is provided by Microsoft. The lack of any backdoor has been a concern to the UK Home Office,[22] which tried entering into talks with Microsoft to get one introduced, although Microsoft developer Niels Ferguson and other Microsoft spokesmen state that they will not grant the wish to have one added.
 

smakme7757

Golden Member
Nov 20, 2010
1,487
1
81
I understand the question. Seeing as we can change the password instantly we cannot possibly be encrypting the contents of the drive with the password we type in. If we did it would have to re-encrypt the whole drive.

I haven't been able to find a source, but I presume that the user password is used to encrypt the primary encryption key used for the drive. So your user password unlocks the device password which then decrypts the data.

So when you change your user password you just re-encrypt the device password. Seeing as that doesn't change you don't need to encrypt the contents again.
 
Last edited:

ViRGE

Elite Member, Moderator Emeritus
Oct 9, 1999
31,516
167
106
I understand the question. Seeing as we can change the password instantly we cannot possibly be encrypting the contents of the drive with the password we type in. If we did it would have to re-encrypt the whole drive.

I haven't been able to find a source, but I presume that the user password is used to encrypt the primary encryption key used for the drive. So your user password unlocks the device password which then decrypts the data.

So when you change your user password you just re-encrypt the device password. Seeing as that doesn't change you don't need to encrypt the contents again.
Bingo. The PIN/password controls access to the actual encryption key, which is typically stored in the TPM (or a USB flash drive). There's an MS blog that goes over all of this, but I can't for the life of me find it at the moment.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |