Issue
Drive Encryption failure due to a Group Policy Object (GPO) conflict.
Symptom
The issue column on the Drive Encryption page displays conflict with GPO configuration.
Cause
The encryption method configured in your Nebula policy doesn't match the BitLocker encryption method enforced by Group Policy.
Resolution
Align the encryption method in your policy with the one enforced by your GPO, then reboot the endpoint twice.
- On the endpoint, open the Start menu and search for Local Group Policy Editor.
- Navigate to Computer Configuration > Administrative Templates > Windows Components > BitLocker Drive Encryption to identify the encryption method enforced by your GPO.
- In Nebula, go to Configure > Policies.
- Open the Drive Encryption policy applied to the affected endpoints.
- Go to the Drive Encryption section and update the encryption method to match your GPO.
- Save the policy.
- Restart the endpoint. This allows the Endpoint Agent to read and apply the updated encryption method.
- Restart the endpoint to trigger BitLocker encryption using the correct method.
- After the last restart, the encryption status in Nebula updates.
Return to Drive Encryption guide.