Before enabling Drive Encryption, review the requirements below to determine which endpoints can be encrypted.
Subscription requirements
Drive Encryption requires an Advanced, Elite, or Ultimate bundle subscription.
System requirements
| Requirement | Details |
|---|---|
| Device types | Workstations only. Servers and removable drives are not supported. |
| Supported OS | Windows 10 (version 1607 and later) and Windows 11. |
| Supported editions | Windows Pro, Enterprise, and Education editions. BitLocker is not available on Windows Home Edition. |
| Drive types |
Fixed drives only: OS drive and Internal data drives. Removable drives are not supported. |
| Trusted Platform Module (TPM) |
TPM chip version 1.2 or 2.0 must be present and initialized. Configurations where a personal identification number must be provided to unlock drives (TPM+PIN) are not supported. If TPM+PIN is set in Group Policy, it must be disabled. |
| BitLocker Command Line language | Command Prompt must display in English. This isn't always the same as the operating system's display language, as several factors can affect it, including: installed OS language, display language settings, and installed Multilingual User Interface (MUI) packs. |
Note: Self-encrypting drives and endpoints with third-party full-disk encryption software are not supported or encrypted by Nebula Drive Encryption
Endpoint agent requirements
The endpoint must run Asset Manager version 2.2.0.82 or later.
Return to Drive Encryption guide.