Windows 10: Bitlock with yubikey pin entry

Discus and support Bitlock with yubikey pin entry in Windows 10 Gaming to solve the problem; Hello,I have setup bitlocker to use a smartcard, in my case a yubikey, to unlock a drive. To unlock the drive, a pin entry dialog is shown. When I... Discussion in 'Windows 10 Gaming' started by AnAnnoyedCustomer, Jan 19, 2025.

  1. Bitlock with yubikey pin entry


    Hello,I have setup bitlocker to use a smartcard, in my case a yubikey, to unlock a drive. To unlock the drive, a pin entry dialog is shown. When I click on the desktop for example, the pin entry dialog loses focus, but when I click back on the pin entry dialog the focus is not returned. I cannot abandon the pin entry dialog by clicking the close button "X" top right, or go back to entering the pin. If I want to I can once again attempt to unlock the drive, giving me a second pin entry dialog. I can continue like this mutiple times, leading to numerous pin entry dialogs.Is there a known fix for

    :)
     
    AnAnnoyedCustomer, Jan 19, 2025
    #1
  2. Jambon28 Win User

    Bitlocker, Yubikey and TPM?

    Hi, I want to protect the data stored on the hard disk drives of my PC. The purpose is: * to prevent someone physically accessing my PC and pluging a bootable USB stick from reading/modifying the content of my HDDs * to prevent someone from reading/modifying the content of my HDDs if they physically pull my HDDs out of my PC and put them in another PC 1/ I think Bitlocker is the way to go: it's free and already built-in Windows. I already gave Bitlocker a try on another older PC and I like it but in order to guarantee a strong level of security, Bitlocker must use a strong password, which is a pain to remember and a pain to type each time the PC boots. Not to mention I will have to type this PW every time I want to open a bitlocked partition (all partitions will be bitlocked). 2/ This is why I plan to buy a Yubikey, but I'm not sure I can have it working the way I want. What I want is: everytime I boot the PC I have to plug the Yubikey in a USB port of my PC so that Bitlocker is automatically unlocked without the hassle of typing a Password. And when I open File Explorer, I can open every bitlocked partitions just like if they were not encrypted with Bitlocker as long as my Yubikey is still plugged in. Can you tell me if it's doable? I find most of Yubikey tutorials being hard to understand and before I choose to buy a pair of these, I want to make sure it will work as expected. 3/ I also have concerns about TPM. This subject is a bit unclear to me as well. I read this thread, but still didn't manage to perfectly understand it: Verify Trusted Platform Module (TPM) Chip on Windows PC I have an Asus Prime TRX40-Pro S mobo, with a AMD Threadripper 3990X cpu. Here is what the Powershell get-tpm command says:
    Bitlock with yubikey pin entry 353032d1637816229t-bitlocker-yubikey-tpm-capture.jpg
    My question is: say in the future I replace my motherboard, or I replace my cpu. Will I still be able to read the content of my Bitlocked HDDs? (as I guess by replacing these hardware components, the TPM keys will change as well) Or, which is a bit the same, if I pull out the HDDs of my PC and I plug them into another PC, will I be able to read them? Given I have the Yubikey of course. It's an interesting but hard topic to me so I hope all of this makes sense *Smile Thank you in advance for your answers, Windows 10 Pro version 21H1 (OS Build 19043.928). I am currently installing Windows and the PC is not connected to internet yet, this is why Windows is not up to date yet.
     
    Jambon28, Jan 19, 2025
    #2
  3. Yubikey 5 and certreq

    Hi Tim. I'm Greg, 10 years awarded Windows MVP, here to help you.

    See here how to manage Yubikey 5 with Bitlocker enabled:

    https://www.reddit.com/r/yubikey/comments/ryvj9...

    https://support.yubico.com/hc/en-us/articles/36...

    https://cloudbrothers.info/en/til-unlock-bitloc...

    https://www.reddit.com/r/yubikey/comments/qcemc...

    https://www.reddit.com/r/yubikey/comments/haf04...

    For further help with this contact Yubikey Support here:

    Contact Us

    https://support.yubico.com/hc/en-us/requests/new

    Feel free to ask back any questions. Based on the results you post back I may have other suggestions if necessary.

    ______________________________________________

    Standard Disclaimer: There are links to non-Microsoft websites. The pages appear to be providing accurate, safe information. Watch out for ads on the sites that may advertise products frequently classified as a PUP (Potentially Unwanted Products). Thoroughly research any product advertised on the sites before you decide to download and install it.
     
    Greg Carmack - Windows MVP 2010-2020, Jan 19, 2025
    #3
  4. Bitlock with yubikey pin entry

    When I register my yubo yubikey on my windows laptop don't I have to use the yubikey on my computer.

    Hi, Howard_35_78

    Welcome to the MicroSoft Community.



    Yes, you must first register your YubiKey with your Outlook.com account, irrespective of whether you are using a local or an administrator account on your computer. Here’s how you can set it up:

    1. Enable Two-Step Verification:
      • Log into your Outlook.com account.
      • Go to ‘Security Settings’ and enable ‘Two-step Verification’.
    2. Add YubiKey as a Security Key:
      • In the ‘Security Basics’ page, click on ‘More Security Options’.
      • Under the ‘Windows Hello and Security Keys’ section, click on ‘Set up a Security key’.
      • Follow the prompts to add your YubiKey as a security key.
    After these steps, you can use your YubiKey to authenticate yourself when logging into your Outlook.com account from any computer. When you insert your YubiKey into a USB port and touch the button on the YubiKey, it generates a one-time password to authenticate your login. This means that you don’t have to remember a password, making your account more secure against phishing and other attacks.

    The YubiKey 5C NFC works with both local and administrator accounts and can be used to secure a wide range of online services that support FIDO U2F or FIDO2 protocols, including Microsoft accounts. Remember, it’s always recommended to have a backup login method (like a secondary email, phone number, or another security key) in case you lose your YubiKey.



    If there is anything not clear or I can't understand your problem, please do not hesitate to let me know.



    Best Regards

    Martin | Microsoft Community Support Specialist
     
    Martin - MSFT, Jan 19, 2025
    #4
Thema:

Bitlock with yubikey pin entry

Loading...
  1. Bitlock with yubikey pin entry - Similar Threads - Bitlock yubikey pin

  2. Bitlock with yubikey pin entry

    in Windows 10 Software and Apps
    Bitlock with yubikey pin entry: Hello,I have setup bitlocker to use a smartcard, in my case a yubikey, to unlock a drive. To unlock the drive, a pin entry dialog is shown. When I click on the desktop for example, the pin entry dialog loses focus, but when I click back on the pin entry dialog the focus is...
  3. Bitlocker recovery key entry

    in Windows 10 Installation and Upgrade
    Bitlocker recovery key entry: My new computer asks me to enter the recovery key for the new device. I found the key, I can key in the numerical letters, but can't key in the letters. what I need to do?<Changed to a question>...
  4. Bitlocker with TPM, password, usbkey or yubikey

    in AntiVirus, Firewalls and System Security
    Bitlocker with TPM, password, usbkey or yubikey: Hi, Which would be more secure? BitLocker with TPM, password, and usb-key or yubikey? I believe I know how to configure the 3-factor combo in Windows 10 pro, but not the yubikey. Thank-You! 182280
  5. Yubikey 5 PIV Smartcard for Bitlocker on Windows 10 x64

    in AntiVirus, Firewalls and System Security
    Yubikey 5 PIV Smartcard for Bitlocker on Windows 10 x64: I cannot get Windows 10x64 to use the smartcard on Yubikey 5 for bitlocker on non-system drives. "No Valid Certificates Were Found on This Smart Card" comes when I try to turn on bitlocker - this happens immediately,no PIN is requested. I make the certificate with certreq,...
  6. Too many PIN entry attempts BitLocker error in Windows 10

    in Windows 10 News
    Too many PIN entry attempts BitLocker error in Windows 10: [ATTACH]In today’s post, we will identify the cause and the offer the possible workaround to the issue of Too many PIN entry attempts error message […] This post Too many PIN entry attempts BitLocker error in Windows 10 is from TheWindowsClub.com. read more...
  7. bitlocker PIN

    in AntiVirus, Firewalls and System Security
    bitlocker PIN: Hi, i have a problem on few devices, i run Bitlocker for them and people didn't set pin on their devices, but system is asking about PIN. What should i do in this case? 2nd question - can i reset TPM remotely for some other computers?...
  8. yubikey

    in AntiVirus, Firewalls and System Security
    yubikey: Ok, let's hear your experiences with yubikey... https://answers.microsoft.com/en-us/windows/forum/all/yubikey/938fb49e-b820-48de-85da-5adc964b9938"
  9. yubikey

    in AntiVirus, Firewalls and System Security
    yubikey: Cannot sign into any Microsoft accounts using yubikey5...keeps saying "cannot use this key, try another" and when prompted for password/pin, says invalid pin. Followed the set up instructions...What now...dump Microsoft and migrate over to Linux mint?(where yubikey works...
  10. BitLocker Password Entry

    in AntiVirus, Firewalls and System Security
    BitLocker Password Entry: I attempted to use BitLocker on my system drive. I do not have TPM so used the Group Policy Editor to enable. After the first few steps were followed, a PC restart was requested. On restarting I see the blue screen asking for my BitLocker Password (Yes I do know it!)...