Volume restore keeping Bitlocker software encryption intact
Hello!
By looking at the feature list of the competitors product MacriumReflect, I found a very nice thing: They are able to do a full image restore of a Bitlocker software encrypted volume, keeping Bitlocker encryption enabled and working.
They do this within their bootable WinPE environment. The Bitlocker encrypted target volume has to be unlocked in WinPE, and the backup image has to contain an unencrypted version of this volume, as it is created when the backup is done within Windows when the volume was unlocked.
Then they do their "Rapid Delta Restore", restoring only parts of the filesystem that were changed, which somehow keeps Bitlocker intact.
If you do this using True Image, the Bitlocker encrypted volume will be overwritten with a completely unencrypted volume, even if you unlock the target volume before. This happens even though Acronis Rescue Media has full Bitlocker support when you create the standard WinRE based medium (I use this regularly for restoring images that are saved on Bitlocker encrypted volumes within WinRE-based rescue environment - you just have to unlock the volume using commandline "manage-bde" within WinRE)
So are there any plans for Acronis to support a full Bitlocker-aware restore from within WinRE-based medium in the future?
Like I understand it, the volume restore from Acronis Cloud is already using some kind of "Delta restore" because it only downloads that parts of the volume that were changed since the backup was created/updated. Isn't it possible for TI to also keep Bitlocker this way?
I ask because right now it is annoying and time consuming as hell that you have to re-encrypt the whole OS volume each time after a TI restore was done. This also breaks Bitlocker auto-unlock of secondary data volumes, because this is only allowed when the OS volume is encrypted. So each time I want to rollback the system, I have to fiddle around with the commandline to get everything back into working and properly encrypted state.


- Anmelden, um Kommentare verfassen zu können

Hello Martin,
I've added your feedback as a vote for the existing feature request (TI-161445 Support Bitlocker in bootable environment). The product management will consider changes based on the number of requests and the cost of implementation.
- Anmelden, um Kommentare verfassen zu können