Does BitLocker Drive Encryption Offer Whole Volume Encryption?

BitLocker drive encryption offers whole volume encryption. Know how to enable BitLocker whole disk encryption and effectively manage that.

Irene

By Irene / Updated on February 19, 2024

Share this: instagram reddit

Does BitLocker drive encryption offer whole volume encryption?

Yes, BitLocker drive encryption provides whole volume encryption, but specific prerequisites must be met before enabling whole disk encryption.

▌TPM Requirement:

1. A device needs TPM 1.2 or later versions for BitLocker to utilize the system integrity check provided by TPM. If you don't know how to check and enable TPM, here's a guidance for reference.

2. If a device lacks TPM, enabling BitLocker necessitates saving a startup key on a removable drive.

▌TPM with TCG-Compliant BIOS or UEFI Firmware:

1. Devices with TPM must have a BIOS or UEFI firmware that complies with Trusted Computing Group (TCG) standards.

2. The BIOS or UEFI firmware establishes a secure preboot startup chain of trust and must support TCG-specified Static Root of Trust Measurement.

3. Computers without TPM do not require TCG-compliant firmware.

▌Operating System Drive:

Contains the OS and its support files, and it must be formatted with the NTFS file system.

▌System Drive:

1. Contains essential files for booting, decryption, and loading the operating system.

2. Must not be encrypted, and it must differ from the operating system drive.

3. On UEFI-based firmware computers, it must be formatted with the FAT32 file system. On BIOS firmware computers, it must be formatted with the NTFS file system.

4. After BitLocker is activated, it should have approximately 250 MB of free space. It is recommended to be approximately 350 MB in size. If you have insufficient disk space, you can read this passage to learn how to get more drive space.

How to enable BitLocker full encryption?

While a powerful feature, BitLocker support in Microsoft Windows is not universal across all versions. Currently, only specific editions have this capability:

Windows Vista and Windows 7: Enterprise and Ultimate editions
Windows 8 and 8.1: Pro and Enterprise editions
Windows Server: 2008 and later
Windows 10/11: Pro, Enterprise, and Education editions

If you are a Home user who wants to enjoy this feature, AOMEI Partition Assistant Professional extends BitLocker functionality to you. This versatile computer management tool enables data safety and privacy for Windows Home users by adding BitLocker support. It also provides advanced management features for higher Windows versions, including backup of recovery keys, password changes, drive locking, and BitLocker deactivation.

Download Pro Demo Win 11/10/8.1/8/7
Secure Download

Step 1. Install and open AOMEI Partition Assistant Professional. Navigate to the "Tools" main tab and choose "BitLocker". Or, right-click on the partition you wish to encrypt and select the "BitLocker" -> "Turn on BitLocker" option in the Context Menu.

bitlocker-tools

Step 2. All system drives, fixed data drives, and removable drives will be listed. Locate the partition you want to encrypt with BitLocker and click on the "Turn on BitLocker" option (e.g., Drive D:).

turn-on-bitlocker

Note: It only provides encryption for NTFS partitions. If you are using FAT or FAT32, kindly please convert it to NTFS with AOMEI Partition Assistant.

Step 3. Set and confirm a password for encrypting the drive, then click "Next".

turn-on-bitlocker-enter-password

Step 4. Choose how to back up your recovery key. You can either pick "Save to a file" or "Print the recovery key".

turn-on-bitlocker-backup-recovery-key

Note:
Do not save the recovery key in the same path as the encrypted drive. For instance, if you're encrypting D:, avoid saving the recovery key on the D: drive itself.
If you choose "Save to a file," please designate a location on your PC to store the recovery key.

Step 5. Next, click the "Next" button to begin the encryption process. Afterward, you'll need to restart your PC to access the Windows PE environment for BitLocker to encrypt the system drive. Click "OK" to proceed.

enter-into-winpe-environment

Step 6. Once the encryption process is finished, you'll see an encryption completion window. You can click "OK" to restart your PC.

encryption-completed-winpe

Summary

BitLocker drive encryption offers whole volume encryption. But if you are a Windows Home users who want to enjoy this function, it is advisable to choose AOMEI Partition Assistant. This software are also beneficial for easy management of BitLocker for higher Windows versions.

AOMEI Partition Assistant is also equipped with many practical functions. When you upgrade a device, Clone Disk and OS Migration can help you quickly transfer the original data to the new one. If you encounter insufficient disk space problem, this tool provides Delete Large Files, Duplicate Files Finder, App Mover, Allocate Free Space, etc., for you to extend drive space.

Windows Server users can choose the Server Edition. For businesses and enterprises, AOMEI Partition Assistant Unlimited or Technician can offer you advanced technical support.

Irene
Irene · Staff Editor
Irene is an Editor of AOMEI Technology. She devotes herself in giving insightful thoughts on common computer problems with simple and clear guidance. Irene loves to help people solve problems and explore more solutions on relevant issues. She loves reading, singing and travelling.