
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-09-2019 01:05 PM
I have updated to Lansweeper v.7.2.100.20 hoping to view Bitlocker Recovery keys but I am getting no information found on the Recovery Keys page.
Encryptable volumes shows the C drive as Protection status On. I have granted the account Lansweeper uses access to the Bitlocker keys in active directory and confirmed my Lansweeper user has the correct permission to view Bitlocker keys in Lansweeper.
Any ideas on what to check or what I am missing?
- Labels:
-
General Discussion

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-20-2019 03:26 PM

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-24-2019 05:28 PM
Stephane wrote:
Hi, I do see recovery keys for most of the computers, but some that were done in the last couple of days won't show up. It could take days before Lansweeper integrate them. I've launch the manual scan on the device, but AD keys are stored within AD, not in the computer info. I would like to force the AD discovery for a specific computer ?
What you could do is lower the minimal time between scans for AD computers if you really need the data quickly (you can always revert it later)
In the Scanning tab (below the exclusions) the AD scanning options allow you to choose how frequently an AD computer is scanned regardless of number of logons onto the DC. By default, an AD scan will only be done if the logon onto the DC was more that 20h ago.
So you could change the minimum time to like an hour and make sure that the computers DC logon happens again.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-20-2019 12:56 PM
If your AD data isn't updating, check your server options within Lansweeper and make sure that "Refresh Active Directory computer details (OU,description,... )" is enabled under Asset Cleanup Options

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-19-2019 06:15 PM
Select Top 1000000 Case
When Coalesce(tblAssets.OScode, '') = '' And tblAssets.Assettype = -1 Then
'notscanned.png'
When tblAssets.Assettype = -1 Then tsysOS.Image
Else tsysAssetTypes.AssetTypeIcon10
End As icon,
tblAssets.AssetID,
tblAssets.AssetName,
tblAssets.Domain,
tblADComputers.IsEnabled As Enabled,
tsysOS.OSname As OS,
tblAssets.SP,
tblAssets.OScode + '.' + tblAssets.BuildNumber As Build,
tblAssets.Version As [OS Version],
tblAssetCustom.Manufacturer,
tblAssetCustom.Model,
tblAssetCustom.Location,
tsysIPLocations.IPLocation,
tblAssets.Firstseen,
tblAssets.Lastseen
From tblAssets
Inner Join tblADComputers On tblAssets.AssetID = tblADComputers.AssetID
Inner Join tsysAssetTypes On tsysAssetTypes.AssetType = tblAssets.Assettype
Inner Join tblAssetCustom On tblAssets.AssetID = tblAssetCustom.AssetID
Inner Join tblEncryptableVolume On
tblAssets.AssetID = tblEncryptableVolume.AssetId
Left Outer Join tsysOS On tblAssets.OScode = tsysOS.OScode
Left Outer Join tsysIPLocations On tsysIPLocations.LocationID =
tblAssets.LocationID
Where (tsysOS.OSname = 'Win 10' Or tsysOS.OSname = 'Win 7') And
tsysOS.OSname Not Like 'Win 2%' And tblAssets.Lastseen > GetDate() - 60 And
tblAssetCustom.State = 1 And tblADComputers.ADObjectID Not In (Select
tblBitLockerRecoveryKey.AdObjectId
From tblBitLockerRecoveryKey) And tblEncryptableVolume.DriveLetter = 'C:'
And tblEncryptableVolume.ProtectionStatus = 1
Order By tblAssets.AssetName

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-19-2019 04:50 PM
BitLocker keys have started appearing for computers in Lansweeper. Not sure what triggered it. I did add a active directory domain as a scanning target but prior to that I already had ip range scans, active directory computer path & active directory user.

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-19-2019 04:00 PM

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-11-2019 05:37 PM
Also just to make sure, you are storing your BitLocker keys in AD already, correct?

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-10-2019 07:12 PM
Report Name - Computer: BitLocker recovery keys found in AD

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎09-11-2019 05:13 PM
RKCar wrote:
When viewing an individual machine - Config>Windows>BitLocker Encryption>Recovery Keys
Report Name - Computer: BitLocker recovery keys found in AD
By the way I see a report "Computer: BitLocker recovery keys found in AD
but after scan AD there is no info to show on the report.
I´m able to read the AD with the same credentials that I use to scan with Lansweeper....
should we configure something in particular?
