

Regarding the backups, I cannot still think of an easy way. This will generate an unique individual key for each machine, as well as you have an image that could be restored to any machine rather than a specific machine. One possible solution is to use an unencrypted image and run BitLocker after deploying it to new machine. I am still not sure if there are tools to update the key if stored in the TPM chip. But if you take an image of an encrypted drive and deploy to multiple machines, all of them will contain the same key. With that kind of security, you cannot share a single key among all the users.

However, these images will not be viewable from Ghost Explorer and you can restore to a disk with the same geometry.ĭeploying images with BitLocker raises some interesting questions. Having a repetitive pattern in unused sectors will increase the compression ratio considerably. If you really need to do that for deployment purposes, consider wiping the disk before installing Vista. Ghost 11.x will detect the BitLocker and switch to sector image mode when creating images. However, this is expected since it suppose to be used to achieve a very high level of security, which should be difficult (if not impossible) to break. As you correctly say, There is only little public information tavailable on BitLocker.
