What does HRESULT 0x80310063 (FVE_E_POLICY_STARTUP_KEY_REQUIRED) mean?

 
Previous Next
FVE_E_POLICY_STARTUP_KEY_NOT_ALLOWED FVE_E_POLICY_STARTUP_PIN_KEY_NOT_ALLOWED

FVE_E_POLICY_STARTUP_KEY_REQUIRED

FVE_E_POLICY_STARTUP_KEY_REQUIRED The effective BitLocker policy requires a startup key for the operating-system drive, but the requested configuration does not include one. The pre-boot protector must be added before protection can comply with the policy.

What to check

  • Verify that requiring removable-media startup authentication is intentional and supported by the device’s boot workflow.
  • Create the startup key through the approved process and store it separately from the encrypted computer.
  • Confirm that a recovery method remains available in case the startup key is lost.
manage-bde -protectors -get <drive>

Microsoft: Configure BitLocker policy settings

Microsoft: manage-bde -protectors

Microsoft: BitLocker boot and TPM countermeasures


Looking for a different code? Search another status or error code.