How to encrypt a drive with BitLocker in Windows 10

Hard drive encryption is the simplest and fastest way to increase security. It is great that Windows has a built-in drive encryption program, called BitLocker. This utility is available for Windows 10 Pro, Enterprise and Education users.

Drive encryption sounds scary because if you lose your password, your drive will be locked forever. On the contrary, the security it provides you is almost unrivaled. Here's how you can encrypt a hard drive with BitLocker on Windows 10 .

What is BitLocker?

BitLocker is a full disk encryption tool, available in Windows 10 Pro, Enterprise, Education. You can use BitLocker to encrypt a volume drive (which may be part or the whole drive).

BitLocker provides strong encryption for regular Windows 10 users. By default, BitLocker uses strong AES 128-bit (or AES-128) encryption. Currently, there is no method to break it. A research team tried to hack into this AES encryption algorithm but it might take millions of years to crack the key. That's why people call AES "military grade encryption."

Therefore, BitLocker uses AES-128 to provide the highest "security barrier" for all users. In addition, you can also use BitLocker with 256-bit higher encryption to crack the drive code almost impossible. This article will guide you how to transfer BitLocker to AES-256 environment.

Basically, BitLocker has 3 different encryption methods:

  • User authentication mode: "Standard" user authentication mode encrypts the drive, requires authentication before unlocking with a PIN or password.
  • Transparent operating mode : This is a slightly more advanced mode, using the Trusted Platform Module (TPM) chip. This chip checks the unmodified file system since you encrypt the drive with BitLocker. If the file system is tampered with, the TPM chip will not unlock. In return, you cannot enter the password to decrypt the drive. This transparent operating mode creates a second layer of security for encrypting your drives.
  • USB key mode : USB Key mode uses a physical USB device to boot into an encrypted drive.

How to check if your system has TPM or not?

Not sure if your system has a TPM module? Press the Windows+ key R, then type tpm.msc . If you see information about TPM on your system, it is already installed. If you see the message "Compatible TPM cannot be found," your system does not have the TPM module installed.

How to encrypt a drive with BitLocker in Windows 10
Notice that no compatible TPM is found on Windows 10 computers

No problem if you don't already have it. You can still use BitLocker without the TPM module. Here are more detailed instructions.

How to check the status of BitLocker

The first thing you need to do is check if BitLocker is enabled on the system or not.

Type gpedit in the Start Menu search bar and select Best Match. The Group Policy Editor will open.

Go to Computer Configuration> Administrative Templates> Windows Components> BitLocker Drive Encryption> Operating System Drives .

Select Require additional authentication at startup after Enabled .

If the system does not have a compatible TPM module, check the Allow BitLocker box without a compatible TPM .

How to encrypt a drive with BitLocker in Windows 10
Activate additional authentication requests on startup

How to use BitLocker Drive Encryption on Windows 10

First, type bitlocker in the search bar on the Start Menu, then select Best Match.

Select the drive you want BitLocker encrypted> select Turn BitLocker On .

Now you have to choose how you want to encrypt this drive. Here, you have two options:

  • Use password.
  • Use a smart card.

Check the first option to use a drive unlock password.

Select the BitLocker password

This is an extremely interesting part: choose a strong password that is suitable and easy to remember for you. As suggested by BitLocker, the password should contain uppercase & lowercase letters, numbers, spaces and symbols. You can refer to How to create a strong strong password on download.vn .

How to encrypt a drive with BitLocker in Windows 10
Encrypt the drive with BitLocker

Once you've created the appropriate password, enter it, then type it again to confirm it.

The next page contains options for generating a BitLocker recovery key. The key must be "unique, unique" and this is the only way you can make a secure copy of the data. You have 4 options. The article select Save to File , then click on the location to save easily. Finally, click Next .

The number of drives and the encryption BitLocker uses

This step, you need to choose the number of drives you want to encrypt. BitLocker recommends encrypting the entire drive if you use it to ensure the safety of all available data, including information that has been deleted but not yet moved from the drive. On the other hand, if you encrypt a new drive or computer, you only need to encrypt the part currently used by BitLocker to automatically encrypt the new data when added.

Finally, choose the encryption mode. Windows 10 version 1511 introduces a new drive encryption mode, called XTS-AES. It provides integrity preservation support. However, XTS-AES is not compatible with older versions of Windows. If the drive encrypted with BitLocker is still on the system, you can choose the new XTS-AES mode.

Conversely, if you plan to connect the drive to another computer, select Compatible mode .

Encrypt the drive with BitLocker

How to encrypt a drive with BitLocker in Windows 10
The time BitLocker performs the task depends on the amount of data to encrypt

As a final step, it's time to use BitLocker to encrypt the drive. Select Start encrypting and wait for the process to complete. This may take a while depending on the amount of data you have.

When rebooting the system or accessing an encrypted drive, BitLocker will prompt you for a password.

Use the new BitLocker AES-256

Instead of 128-bit AES, you can use stronger 256-bit AES encryption for BitLocker. Although 128-bit AES never seems to be defeated, you can always power it up if you want.

The main reason to use AES-256 instead of AES-128 is to counteract the rise of quantum computing in the future. This method can break the existing standard encryption more easily than hardware.

Open Group Policy Editor, go to Computer Configuration> Administrative Templates> Windows Components> BitLocker Drive Encryption .

Select Choose drive encryption method and cipher strength > check Enabled , and then click XTS-AES 256-bit in the drop down dialog box. Click Apply . It's done.

How to encrypt a drive with BitLocker in Windows 10
Choose the drive encryption method as desired

Now you know how to encrypt a Windows 10 drive with BitLocker. Using this method, you do not need to install a third application on your computer. Hope the article is helpful to you.

Leave a Comment

Troubleshooting Microsoft Edge HSTS Error and Security Attacks

Troubleshooting Microsoft Edge HSTS Error and Security Attacks

Stuck with Microsoft Edge HSTS Error? Get step-by-step troubleshooting fixes, uncover security attack risks, and secure your browsing. Proven solutions for the latest Edge updates – no tech skills needed!

How to Fix Microsoft Edge Unable to Connect to Proxy Server

How to Fix Microsoft Edge Unable to Connect to Proxy Server

Struggling with Microsoft Edge "Unable to Connect to Proxy Server" error? Discover proven, step-by-step fixes to get back online fast. No tech skills needed – resolve it in minutes!

How to Fix Microsoft Edge Login Screen Background Blur

How to Fix Microsoft Edge Login Screen Background Blur

Tired of the blurry Microsoft Edge login screen background? Get step-by-step fixes to restore sharp, clear visuals on your Windows PC. Proven methods for the latest Edge versions.

How to Fix Microsoft Edge Update Stuck at 0% or 100%

How to Fix Microsoft Edge Update Stuck at 0% or 100%

Frustrated with Microsoft Edge update stuck at 0% or 100%? Discover simple, effective fixes to resolve the issue fast and update smoothly without losing data. Step-by-step guide for Windows users.

How to Fix Microsoft Edge Clock Ahead Error

How to Fix Microsoft Edge Clock Ahead Error

Tired of the frustrating Microsoft Edge "Clock Ahead" Error blocking your sync? Discover step-by-step fixes, from clock sync to Edge reset, for instant relief and smooth browsing. Updated with latest solutions!

How to Install Microsoft Edge on Linux (Ubuntu & Fedora)

How to Install Microsoft Edge on Linux (Ubuntu & Fedora)

Discover how to install Microsoft Edge on Linux effortlessly! Step-by-step guide for Ubuntu & Fedora users. Get Chromium power, speed, and security on your distro now. Official methods, troubleshooting tips included.

How to Play the Microsoft Edge Surf Game Without Internet

How to Play the Microsoft Edge Surf Game Without Internet

Dive into endless fun with our ultimate guide on how to play the Microsoft Edge Surf game without internet. Step-by-step instructions, pro tips, and secrets to master the waves completely offline—no connection required!

How to Fix Microsoft Edge Profile Error on Windows 11

How to Fix Microsoft Edge Profile Error on Windows 11

Tired of the frustrating Microsoft Edge 'Profile Error' on Windows 11? Discover simple, step-by-step fixes that work on the latest updates. Restore smooth browsing in minutes—no tech expertise needed!

Troubleshooting Microsoft Edge Context Menu Slow Error

Troubleshooting Microsoft Edge Context Menu Slow Error

Tired of Microsoft Edge context menu slow delays ruining your workflow? Follow our proven, step-by-step troubleshooting guide to eliminate right-click lag and restore lightning-fast performance instantly.

How to Fix Microsoft Edge Startup Boost High Disk Fix

How to Fix Microsoft Edge Startup Boost High Disk Fix

Tired of Microsoft Edge Startup Boost causing high disk usage? Discover step-by-step fixes to disable it, reclaim your PC speed, and prevent future issues. Quick, easy, and effective!

How to Fix Microsoft Edge Error Code SBOX_FATAL_MEMORY_EXCEEDED

How to Fix Microsoft Edge Error Code SBOX_FATAL_MEMORY_EXCEEDED

Tired of Microsoft Edge crashing with Error Code SBOX_FATAL_MEMORY_EXCEEDED? Discover proven, step-by-step fixes for this sandbox memory issue. Restore smooth browsing in minutes—no tech expertise needed!

How to Fix Microsoft Edge Cant Connect to the Proxy Server

How to Fix Microsoft Edge Cant Connect to the Proxy Server

Tired of Microsoft Edge "Can't Connect to the Proxy Server" error blocking your browsing? Discover proven, step-by-step fixes to resolve it quickly—no tech skills needed. Latest solutions for seamless surfing!

How to Use Microsoft Edge Group Tabs to Stay Organized

How to Use Microsoft Edge Group Tabs to Stay Organized

Master Microsoft Edge Group Tabs with this step-by-step guide. Learn to create, manage, and customize groups for ultimate tab organization and productivity boost.

How to Fix Microsoft Edge Error Code RESULT_CODE_KILLED_BAD_MESSAGE

How to Fix Microsoft Edge Error Code RESULT_CODE_KILLED_BAD_MESSAGE

Struggling with Microsoft Edge Error Code RESULT_CODE_KILLED_BAD_MESSAGE? Discover proven, step-by-step fixes to stop crashes and get back to browsing smoothly. Updated with the latest solutions for optimal performance.

How to Enable Sleeping Tabs in Microsoft Edge to Save RAM

How to Enable Sleeping Tabs in Microsoft Edge to Save RAM

Discover how to enable Sleeping Tabs in Microsoft Edge to dramatically save RAM and boost performance. Step-by-step guide, tips, and tweaks for maximum efficiency.