cancel
Showing results for 
Search instead for 
Did you mean: 

Host Checker with BitLocker doesn't comply with policy (R9.1.4)

adrischw
New Contributor

Host Checker with BitLocker doesn't comply with policy (R9.1.4)

I have configured Host Checker Policy on Pulse Connect Secure where it checks the HardDisk Encryption from Vendors Selected: Microsoft Coperation.

 

On my device with Windows 10 1909 Bitlocker is enabled.

C:\Windows\system32>manage-bde -status
BitLocker Drive Encryption: Configuration Tool version 10.0.18362
Copyright (C) 2013 Microsoft Corporation. All rights reserved.

 

Disk volumes that can be protected with
BitLocker Drive Encryption:
Volume C: []
[OS Volume]

 

    Size:                 476,31 GB
    BitLocker Version:    2.0
    Conversion Status:    Used Space Only Encrypted
    Percentage Encrypted: 100,0%
    Encryption Method:    XTS-AES 128
    Protection Status:    Protection On
    Lock Status:          Unlocked
    Identification Field: Unknown
    Key Protectors:
        Numerical Password
        Numerical Password
        TPM And PIN

Why do I get the message in PulseSecure Client telling me that Bitlocker is not right?

Reasons: BitLocker Drive Encryption 10.0.18362.1 does not comply with policy. Compliance requires drives to be encrypted.
Pulse Connect Secure has in the log the following info available:
System()[] - Host Checker policy 'uem-hostchecker' failed on host 10.195.112.70 . Reason: 'Rule-uem-Win10-encryption:BitLocker Drive Encryption 10.0.18362.1 does not comply with policy. Compliance requires drives to be encrypted.'.
 
Do you have any Idea where I should start searching?
8 REPLIES 8
nidnuma
New Member

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

I have encountered the same problem.  I first had "Used Space Only encryption" and then I changed it to "Entire Drive encryption" to see if the issue was that the entire drive was not encrypted.  It did not fix the problem. I am still getting the same error message.  The only difference is the specific version referenced in the message "BitLocker Drive Encryption 10.0.19041.1 does not comply with policy."  

 

Has anyone figured out an answer to this problem?

ajayk
Senior Member

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

Hello Team,

As this known issue and our developer team working hard towards the solution on this knows the issue. We recommend you to follow the below KB article for more information Page no.6 PRS-357241 :
https://wwwprev.pulsesecure.net/download/techpubs/current/2166/pulse-connect-secure/esap/3.7.x/ps-es...

Have a good day
|StayHome | Stay Safe|

Regards,
Ajay Kumar
| GSC | Pulse Secure TAC

shikhmanter
New Contributor

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

The link is not working...

Is there a workaround or I am stuck?

shikhmanter
New Contributor

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

The link is not working. Is there a workaround\fix or I just stuck?

shikhmanter
New Contributor

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

The link is not working...

Is there any workaround or a fix? hope I'm not just stuck

zanyterp
Moderator

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

if you have not done so, please open a case with our support team
jerseytwin
New Contributor

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

"Require additional Authen at startup Enabled with "Require TPM" also "Enforce drive encryption type on os system drives "Enabled". worked for me.

jerseytwin
New Contributor

Re: Host Checker with BitLocker doesn't comply with policy (R9.1.4)

"Require additional Authen at startup Enabled with "Require TPM" also "Enforce drive encryption type on os system drives "Enabled". This worked for me.