AMD T-type
Supreme [H]ardness
- Joined
- Aug 26, 2002
- Messages
- 4,590
Is it just me, or is this a very difficult thing to get set up?
I got the wife a new laptop (Latitude E5440) and bought a 256GB Crucial MX100 which is touted to be one of the only drives which "Meets Microsoft eDrive, IEEE-1667, and TCG Opal 2.0 standards of encryption".
Also to point out, I just bought it because it was cheap.
I'm not looking to encrypt my super secret secrets from the governments, but being a laptop and that my wife will be using it for many financial things, I just thought it would be nice to enable eDrive which sounds like a nice feature, especially the no performance hit and lower power consumption points.
There are countless articles touting eDrive and SSD's that support it, but I can't seem to find any easy way to turn this thing on without standing on one foot, patting my head, and doing a backflip.
From what I've been able to find, the following requirements must be met:
Also apparently the drive must be in an uninitiated state according to Microsoft. dafuq? How are you supposed to do this without installing Windows first?
It's on disk hardware encryption, is it really this fucking hard? aka. I hope I'm just doing this wrong.
I got the wife a new laptop (Latitude E5440) and bought a 256GB Crucial MX100 which is touted to be one of the only drives which "Meets Microsoft eDrive, IEEE-1667, and TCG Opal 2.0 standards of encryption".
Also to point out, I just bought it because it was cheap.
I'm not looking to encrypt my super secret secrets from the governments, but being a laptop and that my wife will be using it for many financial things, I just thought it would be nice to enable eDrive which sounds like a nice feature, especially the no performance hit and lower power consumption points.
There are countless articles touting eDrive and SSD's that support it, but I can't seem to find any easy way to turn this thing on without standing on one foot, patting my head, and doing a backflip.
From what I've been able to find, the following requirements must be met:
BitLocker only supports TPM version 1.2 and 2.0 (or newer). In addition, you must use a Microsoft-provided TPM driver (Please note, BitLocker can also work without a TPM, but it will need a USB flash drive to set the password instead)
The system needs to support UEFI 2.3.1
Make sure UEFI boot is enabled and you have a UEFI enabled Windows 8 installed
The computer must boot natively from UEFI.
The boot order must be set to start first from the SSD (not the USB or CD drives)
Dynamic discs are not supported by BitLocker
The SSD must have two partitions (drives with Windows installed generally do anyway) and the main partition to be encrypted must be NTFS
Ensure ATA Security features, for example Secure Boot, are disabled in the BIOS. The M500 supports either ATA Security or TCG Opal (which is needed for SED) but not both.
The system needs to support Opal 2.0 The Opal 2.0 standard is not backwards compatible; Crucial SEDs are not compatible with Opal 1.0
The computer must have the Compatibility Support Module (CSM) disabled in UEFI.
Also apparently the drive must be in an uninitiated state according to Microsoft. dafuq? How are you supposed to do this without installing Windows first?
It's on disk hardware encryption, is it really this fucking hard? aka. I hope I'm just doing this wrong.