ToonTech Formation Lap

Computer Bitlocker Status report

in ADManager Plus  •  AD Reports  •  29 May, 02:35 AM
Hi, I just upgraded to v6.5.70 to have a look at the Bitlocker status reports but I can't find anywhere where I can run this report from.
I also ran the all computers report but when I tried to 'add columns' there's no mention of a botlocker status there either.
can anyone point me in the right direction please?

Thanks.

Replies (12)

MatTee Formation Lap
Under Computer Reports you should see 2 new reports for "Bitlocker Recovery Keys" and "Bitlocker Enabled Computers".

I'm looking to report on computers that don't have Bitlocker enabled.. If you figure that out, let me know!
Scott Employee
Hi ToonTech,

Follow these steps to add Bit Locker status to All Computers Report.

1. Login to the server where ADManager Plus is installed
2. Open a Command Prompt(Using Run As Admin)-->Redirect it to <Installation Folder>\ADManager Plus\Bin
3. Execute EnableBitLockerstatus.bat-->This would add Bit Locker status to All Computers report

ADManager Plus Team
Toll-Free:+1888-720-9500
Email: support@admanagerplus.com
ADManager Plus - Active Directory Management & Reporting Software
MatTee Formation Lap
When following the above instructions I get:

psql: could not connect to server: Connection refused (0x0000274D/10061)
        Is the server running on host "127.0.0.1" and accepting
        TCP/IP connections on port 33306?

Should the IP be changed to the SQL server?
ToonTech Formation Lap
Matt,
I too am hoping to find out about machines that do not have Bitlocker installed.
I'll wait to see if there is a reply to your last comment before I give it a go myself.

Scott Employee
Dear Customers,

When generating All Computers report after adding Bit Locker status the report will show as "-" for computers that do not have Bit Locker Enabled.

If you're using MSSQL as your backend DB, follow these steps

1. Connect to your MSSQL Server
2. Execute the below commands on ADManager Plus database

insert into ADSMTotalReports values(210,3037);
insert into ADSMViewReports values(1,210,3037,5);

ADManager Plus Team 
Toll Free:+1888-720-9500 
Email: support@admanagerplus.com 
ADManager Plus - Active Directory Management & Reporting Software
MatTee Formation Lap
Hi Scott,

I am running MSSQL, thanks for the commands. Still struggling a little though. Second line executed fine, but the first command I get:

Msg 213, Level 16, State 1, Line 1

Column name or number of supplied values does not match table definition.

MatTee Formation Lap
Fixed it:

insert into ADSMTotalReports values(210,3037,true,1);

That worked.

Thanks again.
Scott Employee
Hi MatTee,

Please try executing the below command and check for the issue again,

insert into ADSMTotalReports values(210,3037,1,true);

ADManager Plus Team
Toll Free:+1888-720-9500
Email: support@admanagerplus.com
ADManager Plus - Active Directory Management & Reporting Software
ToonTech Formation Lap
OK, i've got access to the reports. was just a permissions issue in that my 'role' was not able to run/see those reports which is now resolved.
If i run the report called 'Bitlocker Enabled Computers' all i get is a list of workstation which I assume are Bitlocker enabled. I'd prefer to be able to see the workstations that are not. Is there any way we can do this?

Scott - can you shed some light on how this report is generated? as in what information in AD does it look for to determine if a machine is Bitlocker enabled or not?
Scott Employee
Hi ToonTech,

Request you to try generating All Computers report and check for the Bit Locker status information. As mentioned earlier, for computers which do not have Bit locker enabled the report will display "-". 

To generate BitLocker Enabled computers the product collects information on "msFVE-RecoveryInformation". Based on the DN value of this attribute product confirms DN of the computer and report gets generated with information.

ADManager Plus Team
Toll Free:+1888-720-9500
Email: support@admanagerplus.com
ADManager Plus - Active Directory Management & Reporting Software
ToonTech Formation Lap
OK, so which specific column am I looking for when running the all computers report please?
Scott Employee
Hi Toontech,

The Column Name is BitLocker Status. For Computers which are not BitLocker Enabled the product will display "-".

ADManager Plus Team
Toll Free:+1888-720-9500
Email: support@admanagerplus.com
ADManager Plus - Active Directory Management & Reporting Software