G 
		
								
				
				
			
		Guest
I see GPO settings to set options for BitLocker, such as mandating recovery
keys into AD or the level of encryption, but is there an option to keep a
user from decrypting the drive once it has been deployed to them as encrypted?
This applies to the case where a company policy deploys all laptops with
encryption, and doesn't want users to decrypt or re-encrypt the drive
themselves.
Thanks!
				
			keys into AD or the level of encryption, but is there an option to keep a
user from decrypting the drive once it has been deployed to them as encrypted?
This applies to the case where a company policy deploys all laptops with
encryption, and doesn't want users to decrypt or re-encrypt the drive
themselves.
Thanks!
 
	 .
.