| Previous | Next |
| FVE_E_POLICY_STARTUP_PIN_KEY_NOT_ALLOWED | FVE_E_POLICY_STARTUP_TPM_NOT_ALLOWED |
FVE_E_POLICY_STARTUP_PIN_KEY_REQUIRED
FVE_E_POLICY_STARTUP_PIN_KEY_REQUIRED The effective BitLocker policy requires both a startup key and a startup PIN, but the requested configuration lacks that combination. Encryption cannot proceed until the required startup authentication is present.
What to check
- Confirm that the deployment supports both removable-media and PIN entry before boot.
- Provision the required protector combination through the organization’s standard BitLocker process.
- Test recovery before placing the device into production, because this configuration depends on multiple user-held factors.
manage-bde -protectors -get <drive>
Microsoft: Configure BitLocker policy settings
Microsoft: manage-bde -protectors
Microsoft: BitLocker boot and TPM countermeasures
Looking for a different code? Search another status or error code.