Active Roles has the ability to search for and retrieve BitLocker recovery passwords that are stored in Active Directory. This feature helps administrators recover data on BitLocker-encrypted drives.
You may find it necessary to delegate rights to view only to some members of your admin group.
To delegate View permissions to BitLocker recovery passwords, a new Access Template can be created:
NOTE: It may be necessary to also apply the following built-in access template: Computer Objects - View BitLocker Recovery Keys
© 2026 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center