| Previous | Next |
| FVE_E_POLICY_STARTUP_KEY_NOT_ALLOWED | FVE_E_POLICY_STARTUP_PIN_KEY_NOT_ALLOWED |
FVE_E_POLICY_STARTUP_KEY_REQUIRED
FVE_E_POLICY_STARTUP_KEY_REQUIRED The effective BitLocker policy requires a startup key for the operating-system drive, but the requested configuration does not include one. The pre-boot protector must be added before protection can comply with the policy.
What to check
- Verify that requiring removable-media startup authentication is intentional and supported by the device’s boot workflow.
- Create the startup key through the approved process and store it separately from the encrypted computer.
- Confirm that a recovery method remains available in case the startup key is lost.
manage-bde -protectors -get <drive>
Microsoft: Configure BitLocker policy settings
Microsoft: manage-bde -protectors
Microsoft: BitLocker boot and TPM countermeasures
Looking for a different code? Search another status or error code.