| Previous | Next |
| FVE_E_POLICY_PROHIBITS_SELFSIGNED | FVE_E_CONV_RECOVERY_FAILED |
FVE_E_POLICY_CONFLICT_RO_AND_STARTUP_KEY_REQUIRED
FVE_E_POLICY_CONFLICT_RO_AND_STARTUP_KEY_REQUIRED The effective policy conflicts: it denies write access to drives not protected by BitLocker while also requiring a USB startup key. BitLocker cannot satisfy both requirements in the same pre-boot design.
What to check
- Review the policy for denying write access to unprotected drives together with startup-authentication requirements.
- Choose the security model intentionally: require a startup key, or enforce the write-access restriction in a compatible way.
- Resolve this centrally and confirm the effective policy before changing system-drive protectors.
gpresult /h "%TEMP%\bitlocker-gpo.html"
Microsoft: Configure BitLocker policy settings
Microsoft: BitLocker boot and TPM countermeasures
Looking for a different code? Search another status or error code.