I have got a couple of questions about BitLocker.
If I were to misplace the BitLocker Recovery Key, and I want to delete everything in the C: and reinstall Windows? Is that possible? I have read that we could change the boot order to boot from a USB and then reimage Windows. But isn't changing the boot order will trigger the BitLocker Recovery?
Can it boot to the PXE environment and not trigger BitLocker Recovery?
An SSD has BitLocker encryption on it and, I misplaced the Recovery Key. I take the SSD out of the laptop and DBAN it and, install Windows on it. I put the SSD back to the same machine it's Bitlocker-ed with, will this boot up normally? Or, the TPM will request for Recovery Key? Is there a way to reset the TPM?
Have BitLocker policy pushed via Intune, now for some reason, we need this policy removed. What is the best way to go about, removing the policy from the workstations and ensuring that it is no longer encrypted? Do I remove the workstation from the BitLocker policy group that I created? If so, will this reset the policy that Intune has set on the workstations and, the OS drive will be unencrypted?
Any insights or help on this would be much appreciated. Thank you in advance.