Skip to main content

Volume restore keeping Bitlocker software encryption intact

Thread needs solution

Hello!

By looking at the feature list of the competitors product MacriumReflect, I found a very nice thing: They are able to do a full image restore of a Bitlocker software encrypted volume, keeping Bitlocker encryption enabled and working.

They do this within their bootable WinPE environment. The Bitlocker encrypted target volume has to be unlocked in WinPE, and the backup image has to contain an unencrypted version of this volume, as it is created when the backup is done within Windows when the volume was unlocked.

Then they do their "Rapid Delta Restore", restoring only parts of the filesystem that were changed, which somehow keeps Bitlocker intact.

If you do this using True Image, the Bitlocker encrypted volume will be overwritten with a completely unencrypted volume, even if you unlock the target volume before. This happens even though Acronis Rescue Media has full Bitlocker support when you create the standard WinRE based medium (I use this regularly for restoring images that are saved on Bitlocker encrypted volumes within WinRE-based rescue environment - you just have to unlock the volume using commandline "manage-bde" within WinRE)

So are there any plans for Acronis to support a full Bitlocker-aware restore from within WinRE-based medium in the future?
Like I understand it, the volume restore from Acronis Cloud is already using some kind of "Delta restore" because it only downloads that parts of the volume that were changed since the backup was created/updated. Isn't it possible for TI to also keep Bitlocker this way?

I ask because right now it is annoying and time consuming as hell that you have to re-encrypt the whole OS volume each time after a TI restore was done. This also breaks Bitlocker auto-unlock of secondary data volumes, because this is only allowed when the OS volume is encrypted. So each time I want to rollback the system, I have to fiddle around with the commandline to get everything back into working and properly encrypted state.

0 Users found this helpful

Martin, I have not heard of any plans by Acronis to do as you ask but then again they tend to hold their plans very close and only start revealing any significant changes during the Beta phase of a new product release, i.e. when the beta for ATI 2020 is launched in the next few months would be an opportunity for them to introduce such a change.

frestogaslorastaswastavewroviwroclolacorashibushurutraciwrubrishabenichikucrijorejenufrilomuwrigaslowrikejawrachosleratiswurelaseriprouobrunoviswosuthitribrepakotritopislivadrauibretisetewrapenuwrapi
Posts: 250
Comments: 7092

Hello Martin,

I've added your feedback as a vote for the existing feature request (TI-161445 Support Bitlocker in bootable environment). The product management will consider changes based on the number of requests and the cost of implementation.