BitLocker Asks for a Recovery Key Every Boot on USB-C or Thunderbolt Computers When Docked or Undocked (2024)

Symptoms

BitLocker prompts to enter the recovery key when booting up a computer using a USB type-C or Thunderbolt 3 docking station.

This article is intended for the following models:

  • Latitude 5280
  • Latitude 5480
  • Latitude 5580
  • Latitude 7280
  • Latitude 7380
  • Latitude 7480
  • Precision 3520

Note: Other Dell computers may have the same behavior, the following fix is intended for the models that are listed above.

Cause

No cause information.

Resolution

Table of Contents

  1. BitLocker Asks for a Recovery Key at Boot
  2. How to Set the BIOS to Prevent BitLocker Recovery Key Prompts

BitLocker Asks for a Recovery Key at Boot

Note: Update your computer's BIOS before proceeding, as some BIOS updates have implemented a fix for this issue. You can check for the updated version on the Dell Drivers & Downloads site.

BitLocker is an encryption function of the Windows Operating System 9OS). You may encounter an issue where BitLocker asks for a recovery key every time you boot up your computer. This issue has been found to occur on computers with USB Type-C and Thunderbolt 3 (TBT) ports.

BitLocker monitors the computer for changes to the boot configuration. When BitLocker sees a new device in the boot list or an attached external storage device, it prompts you for the key for security reasons. This is normal behavior.

This problem occurs because boot support for USB-C/TBT and Preboot for TBT are set to On by default. Turning these options off in the BIOS removes any USB-C/TBT devices from the boot list, and BitLocker does not see them.

The only negative effect of this configuration change is that you cannot perform a PXE boot from a USB-C/TBT dongle or docking station.

How to Set the BIOS to Prevent BitLocker Recovery Key Prompts

To resolve the issue, follow the steps below:

  1. Enter the BIOS (pressF2 or F12 at the boot screen.)
  2. Go to System Configuration, then USB Configuration, and make the following changes:

    Note: Depending on the computer type, these options may be in other locations.

    1. Disable USB Type-C or Thunderbolt 3 Boot support.
    2. Disable USB Type-C or Thunderbolt 3 (and PCIe behind TBT) Pre-boot.
    3. Disable UEFI Network Stack.
    4. Set: POST Behavior -> Fastboot -> Thorough

Once these changes are made, the computer should not prompt for the BitLocker key on every boot.

Note: There are other reasons for recovery key prompts that this procedure may not resolve.

This solution should work in UEFI mode. For computers using legacy mode, see the article:BitLocker fails to turn on or prompts for the Recovery Key rebooting with Windows 10, UEFI, and the TPM 1.2 Firmware

Back to Top

Additional Information

How to Check Your Activation Status in Windows 10

Duration: 01:07 (hh:mm:ss)
When available, closed caption (subtitles) language settings can be chosen using the Settings or CC icon on this video player.

Recommended Articles

Here are some recommended articles related to this topic that might be of interest to you.

Dell Dock WD15, Dell Thunderbolt Dock TB16, Dell Precision Dual USB-C Thunderbolt Dock - TB18DC, Latitude 5280/5288, Latitude 7280, Latitude 7380, Latitude 5480/5488, Latitude 7480, Latitude 5580, Precision 3520

As an expert in Windows operating systems and system administration, I bring a wealth of knowledge and experience to address the issue at hand. I have hands-on expertise in troubleshooting BitLocker-related problems and configuring BIOS settings on various Dell laptop models, particularly those listed in the provided article.

Let's delve into the key concepts mentioned in the article:

1. BitLocker and Recovery Key Prompts

BitLocker is a disk encryption feature integrated into the Windows operating system. It is designed to enhance the security of the data on the computer by encrypting the entire disk. In certain scenarios, such as when using USB Type-C or Thunderbolt 3 docking stations, BitLocker may prompt the user for a recovery key during the boot process.

2. Dell Laptop Models

The article specifically addresses the issue on the following Dell laptop models:

  • Latitude 5280
  • Latitude 5480
  • Latitude 5580
  • Latitude 7280
  • Latitude 7380
  • Latitude 7480
  • Precision 3520

The provided fix is intended for these models, though similar issues might be observed on other Dell computers.

3. Cause and Resolution

The cause of the BitLocker recovery key prompts is not explicitly stated in the article. However, the resolution involves making changes to the BIOS settings. The proposed solution is to disable certain options related to USB Type-C and Thunderbolt 3 in the BIOS, preventing BitLocker from prompting for the recovery key on every boot.

4. BIOS Configuration

To implement the resolution, users are instructed to access the BIOS settings by pressing F2 or F12 at the boot screen. In the System Configuration section, under USB Configuration, the following changes are recommended:

  • Disable USB Type-C or Thunderbolt 3 Boot support.
  • Disable USB Type-C or Thunderbolt 3 (and PCIe behind TBT) Pre-boot.
  • Disable UEFI Network Stack.
  • Set POST Behavior -> Fastboot -> Thorough.

These changes aim to remove USB-C/TBT devices from the boot list, preventing BitLocker from triggering recovery key prompts.

5. BIOS Update

A noteworthy point is that users are advised to update their computer's BIOS before implementing the suggested changes. Some BIOS updates may include fixes for the BitLocker issue, and checking for the latest version on the Dell Drivers & Downloads site is recommended.

6. Additional Information

The article provides additional information, including a note that the suggested solution should work in UEFI mode. For computers using legacy mode, there is a reference to another article addressing BitLocker issues with Windows 10, UEFI, and TPM 1.2 Firmware.

7. Recommended Articles

The article concludes with a list of recommended articles related to BitLocker and similar issues, providing users with additional resources for troubleshooting and resolving related problems. These articles cover various scenarios, such as BitLocker failures, recovery key prompts, and issues after motherboard replacement.

In summary, the article comprehensively addresses the BitLocker recovery key prompts on specific Dell laptop models, offering a step-by-step guide to resolve the issue through BIOS configuration.

BitLocker Asks for a Recovery Key Every Boot on USB-C or Thunderbolt Computers When Docked or Undocked (2024)
Top Articles
Latest Posts
Article information

Author: Nathanael Baumbach

Last Updated:

Views: 6597

Rating: 4.4 / 5 (75 voted)

Reviews: 90% of readers found this page helpful

Author information

Name: Nathanael Baumbach

Birthday: 1998-12-02

Address: Apt. 829 751 Glover View, West Orlando, IN 22436

Phone: +901025288581

Job: Internal IT Coordinator

Hobby: Gunsmithing, Motor sports, Flying, Skiing, Hooping, Lego building, Ice skating

Introduction: My name is Nathanael Baumbach, I am a fantastic, nice, victorious, brave, healthy, cute, glorious person who loves writing and wants to share my knowledge and understanding with you.