manage-bde.exe BitLocker 驱动器加密: 配置工具 96fa503deee3987161394f3125f1b4fb

File info

File name: manage-bde.exe.mui
Size: 98304 byte
MD5: 96fa503deee3987161394f3125f1b4fb
SHA1: 3ca5ebf2aff9ef881ee88dc790bf5f205200194a
SHA256: ee85bc90e09929978e64b541d2a8170cf4ae1e16d6e1f05bd41d46d439b3c268
Operating systems: Windows 10
Extension: MUI
In x64: manage-bde.exe BitLocker 驱动器加密: 配置工具 (32 位)

Translations messages and strings

If an error occurred or the following message in Chinese (Simplified) language and you cannot find a solution, than check answer in English. Table below helps to know how correctly this phrase sounds in English.

id Chinese (Simplified) English
0x406加密正在进行中。 Encryption is now in progress.
0x414“仅加密已用空间”现正在进行中。 Used Space Only encryption is now in progress.
0x418完全加密现在已完成。 Full Encryption is now complete.
0x419“仅加密已用空间”现已完成。 Used Space Only encryption is now complete.
0x41BBitLocker 保护现在已启用。 BitLocker protection is now on.
0x500解密正在进行中。 Decryption is now in progress.
0x502BitLocker 保护现在已关闭。 BitLocker protection is now off.
0x603卷加密已暂停。 Encryption of the volume has been paused.
0x604卷解密已暂停。 Decryption of the volume has been paused.
0x609已暂停擦除卷上的可用空间。 Free space wiping of the volume has been paused.
0x703卷加密正在进行中。 Encryption of the volume is now in progress.
0x704卷解密正在进行中。 Decryption of the volume is now in progress.
0x706现在正在擦除卷上的可用空间。 Free space wiping of the volume is now in progress.
0x800卷 %1!s! 现在已锁定 Volume %1!s! is now locked
0x903文件“%1!s!”已成功解锁卷 %2!s!。 The file \"%1!s!\" successfully unlocked volume %2!s!.
0x905密码已成功解锁卷 %1!s!。 The password successfully unlocked volume %1!s!.
0x907证书已成功解锁卷 %1!s!。 The certificate successfully unlocked volume %1!s!.
0x910基于 SID 的标识保护器已成功解锁卷 %1!s!。 A SID-based Identity protector successfully unlocked the volume %1!s!.
0xA03卷 %1!s! 上已禁用自动解锁。注意: 如果启用了自动解锁,会在此数据卷上创建关联的外部密钥保护器。若还要删除此保护器,请键入\"manage-bde -protectors %1!s! -delete -id %2!s!\"。 Automatic unlock is disabled on volume %1!s!.NOTE: An associated External Key protector was created on this data volumewhen automatic unlock was enabled. To also delete this protector, type\"manage-bde -protectors %1!s! -delete -id %2!s!\".
0xA05所有自动解锁密钥都将从卷 %1!s! 中删除。 All automatic unlock keys are removed from volume %1!s!.
0xB10已保存到目录 %1!s! Saved to directory %1!s!
0xC00ID 为“%1”的密钥保护器已删除。 Key protector with ID \"%1\" deleted.
0xE00已对卷 %1!s! 启用了密钥保护器。 Key protectors are enabled for volume %1!s!.
0xE01已对卷 %1!s! 禁用了密钥保护器。 Key protectors are disabled for volume %1!s!.
0x1200此卷已升级。 The volume has been upgraded.
0x1800现在正在擦除可用空间。 Free space wiping is now in progress.
0x1803现在已取消擦除可用空间。 Wipe of free space has now been canceled.
0x40000001BitLocker 驱动器加密: 配置工具版本 %1!s!版权所有 (C) 2013 Microsoft Corporation。保留所有权利。 BitLocker Drive Encryption: Configuration Tool version %1!s!Copyright (C) 2013 Microsoft Corporation. All rights reserved.
0x40000100manage-bde[.exe] -parameter [arguments]描述: 在磁盘卷上配置 BitLocker 驱动器加密。参数列表: -status 提供有关支持 BitLocker 的卷的信息。 -on 加密卷并启用 BitLocker 保护。 -off 解密卷并关闭 BitLocker 保护。 -pause 暂停加密、解密或擦除可用空间。 -resume 恢复加密、解密或擦除可用空间。 -lock 阻止访问 BitLocker 加密的数据。 -unlock 允许访问 BitLocker 加密的数据。 -autounlock 管理数据卷的自动解锁。 -protectors 管理加密密钥的保护方法。 -SetIdentifier 或 -si 配置卷的标识字段。 -ForceRecovery 或 -fr 强制 BitLocker 保护的操作系统在重新启动时恢复。 -changepassword 修改数据卷的密码。 -changepin 修改卷的 PIN。 -changekey 修改卷的启动密钥。 -KeyPackage 或 -kp 为卷生成密钥数据包。 -upgrade 升级 BitLocker 版本。 -WipeFreeSpace 或 -w 擦除卷上的可用空间。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -status manage-bde -on C: -RecoveryPassword -RecoveryKey F:\\ manage-bde -unlock E: -RecoveryKey F:\\84E151C1...7A62067A512.bek manage-bde[.exe] -parameter [arguments]Description: Configures BitLocker Drive Encryption on disk volumes.Parameter List: -status Provides information about BitLocker-capable volumes. -on Encrypts the volume and turns BitLocker protection on. -off Decrypts the volume and turns BitLocker protection off. -pause Pauses encryption, decryption, or free space wipe. -resume Resumes encryption, decryption, or free space wipe. -lock Prevents access to BitLocker-encrypted data. -unlock Allows access to BitLocker-encrypted data. -autounlock Manages automatic unlocking of data volumes. -protectors Manages protection methods for the encryption key. -SetIdentifier or -si Configures the identification field for a volume. -ForceRecovery or -fr Forces a BitLocker-protected OS to recover on restarts. -changepassword Modifies password for a data volume. -changepin Modifies PIN for a volume. -changekey Modifies startup key for a volume. -KeyPackage or -kp Generates a key package for a volume. -upgrade Upgrades the BitLocker version. -WipeFreeSpace or -w Wipes the free space on the volume. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -status manage-bde -on C: -RecoveryPassword -RecoveryKey F:\\ manage-bde -unlock E: -RecoveryKey F:\\84E151C1...7A62067A512.bek
0x40000101manage-bde -status [Volume] [{-ProtectionAsErrorLevel|-p}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 提供有关具有 BitLocker 功能的卷的信息。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\"。 -ProtectionAsErrorLevel 或 -p 用于开发批处理文件。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -status manage-bde -status e: manage-bde -status e: -ProtectionAsErrorLevel manage-bde -status [Volume] [{-ProtectionAsErrorLevel|-p}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Provides information about BitLocker-capable volumes.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\". -ProtectionAsErrorLevel or -p Used in developing batch files. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -status manage-bde -status e: manage-bde -status e: -ProtectionAsErrorLevel
0x40000102manage-bde -status [Volume] [{-ProtectionAsErrorLevel|-p}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 提供有关具有 BitLocker 功能的卷的信息。参数列表: Volume 后面跟着冒号、卷 GUID 路径或已装入卷的 驱动器号。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\"。 如果未 提供,则显示所有 具有 BitLocker 功能的卷。 -ProtectionAsErrorLevel 或 -p 用于开发批处理文件。返回用于标识卷是否受 BitLocker 保护的错误级别。如果未指定卷 或指定的卷受 BitLocker 保护, 则返回 0。否则返回 1。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -status manage-bde -status e: manage-bde -status e: -ProtectionAsErrorLevel manage-bde -status [Volume] [{-ProtectionAsErrorLevel|-p}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Provides information about BitLocker-capable volumes.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\". If not provided, displays all BitLocker-capable volumes. -ProtectionAsErrorLevel or -p Used in developing batch files. Returns an error level that identifies whether the volume is BitLocker-protected. Returns 0 if no volume is specified or if the specified volume is BitLocker-protected. Returns 1 otherwise. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -status manage-bde -status e: manage-bde -status e: -ProtectionAsErrorLevel
0x40000103manage-bde -on Volume [{-RecoveryPassword|-rp} [NumericalPassword] ] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-UsedSpaceOnly|-used}] [{-EncryptionMethod|-em} {aes128|aes256|xts_aes128|xts_aes256}] [{-SkipHardwareTest|-s}] [{-Synchronous|-sync}] [{-DiscoveryVolumeType|-dv} {FAT32|[none]|[default]}] [{-ForceEncryptionType|-fet} {Hardware|Software}] [{-RemoveVolumeShadowCopies|-rvsc}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 加密卷并启用 BitLocker 保护。参数列表: Volume 后面跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -RecoveryPassword 或 -rp 添加数字密码保护程序。 -RecoveryKey 或 -rk 添加用于恢复的外部密钥保护程序。 -StartupKey 或 -sk 添加用于启动的外部密钥保护程序。 -Certificate 或 -cert 为数据卷添加公钥保护程序。 -TPMAndPIN 或 -tp 为 OS 卷添加 TPM 和 PIN 保护程序。 -TPMAndStartupKey 或 -tsk 为 OS 卷添加 TPM 和启动密钥保护程序。 -TPMAndPINAndStartupKey 或 -tpsk 为 OS 卷添加 TPM 和 PIN 及启动密钥保护程序。 -Password 或 -pw 为卷添加密码密钥保护程序。 -ADAccountOrGroup 或 -sid 为卷添加基于 SID 的标识保护程序。 -UsedSpaceOnly 或 -used 对卷上现有的已用空间执行加密。 -EncryptionMethod 或 -em 配置加密算法和密钥大小。 -SkipHardwareTest 或 -s 开始加密,不进行硬件测试。 -Synchronous 或 -sync 强制 manage-bde 等待 -on 命令完成, 然后再显示命令提示符。 -DiscoveryVolumeType 或 -dv 指定用于发现卷的文件系统。 -ForceEncryptionType 或 -fet 强制 BitLocker 使用软件或硬件加密。 -RemoveVolumeShadowCopies 或 -rvsc 强制删除卷的卷影副本。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -on C: -RecoveryPassword manage-bde -on C: -RecoveryKey e:\\ -RecoveryPassword manage-bde -on C: -rp -rk \"f:\\Folder\" -SkipHardwareTest manage-bde -on E: -pw manage-bde -on E: -UsedSpaceOnly manage-bde -on E: -sid Domain\\User manage-bde -on E: -sid Domain\\Machine$ -service manage-bde -on Volume [{-RecoveryPassword|-rp} [NumericalPassword] ] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-UsedSpaceOnly|-used}] [{-EncryptionMethod|-em} {aes128|aes256|xts_aes128|xts_aes256}] [{-SkipHardwareTest|-s}] [{-Synchronous|-sync}] [{-DiscoveryVolumeType|-dv} {FAT32|[none]|[default]}] [{-ForceEncryptionType|-fet} {Hardware|Software}] [{-RemoveVolumeShadowCopies|-rvsc}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Encrypts the volume and turns BitLocker protection on.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -RecoveryPassword or -rp Adds a Numerical Password protector. -RecoveryKey or -rk Adds an External Key protector for recovery. -StartupKey or -sk Adds an External Key protector for startup. -Certificate or -cert Adds a public key protector for the data volume. -TPMAndPIN or -tp Adds a TPM And PIN protector for the OS volume. -TPMAndStartupKey or -tsk Adds a TPM And Startup Key protector for the OS volume. -TPMAndPINAndStartupKey or -tpsk Adds a TPM And PIN And Startup Key protector for the OS volume. -Password or -pw Adds a password key protector for the volume. -ADAccountOrGroup or -sid Adds a SID-based Identity protector for the volume. -UsedSpaceOnly or -used Performs encryption of the existing used space on the volume. -EncryptionMethod or -em Configures the encryption algorithm and key size. -SkipHardwareTest or -s Begins encryption without a hardware test. -Synchronous or -sync Forces manage-bde to wait until the -on command has finished before displaying the command prompt. -DiscoveryVolumeType or -dv Specify file system to use for the discovery volume. -ForceEncryptionType or -fet Forces BitLocker to use either software or hardware encryption. -RemoveVolumeShadowCopies or -rvsc Forces deletion of Volume Shadow Copies for the volume. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -on C: -RecoveryPassword manage-bde -on C: -RecoveryKey e:\\ -RecoveryPassword manage-bde -on C: -rp -rk \"f:\\Folder\" -SkipHardwareTest manage-bde -on E: -pw manage-bde -on E: -UsedSpaceOnly manage-bde -on E: -sid Domain\\User manage-bde -on E: -sid Domain\\Machine$ -service
0x40000104manage-bde -on Volume [{-RecoveryPassword|-rp} [NumericalPassword] ] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-UsedSpaceOnly|-used}] [{-EncryptionMethod|-em} {aes128|aes256|xts_aes128|xts_aes256}] [{-SkipHardwareTest|-s}] [{-Synchronous|-sync}] [{-DiscoveryVolumeType|-dv} {FAT32|[none]|[default]}] [{-ForceEncryptionType|-fet} {Hardware|Software}] [{-RemoveVolumeShadowCopies|-rvsc}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 加密卷并启用 BitLocker 保护。使用参数 为加密密钥添加密钥保护程序。这些保护程序将解锁 对 BitLocker 加密数据的访问。如果你的计算机具有受支持的 TPM, 则会自动将 TPM 保护程序添加到 OS 卷。对于 OS 卷,会在硬件 测试之后的下一次重新启动时开始加密。参数列表: Volume 必需。后面跟着冒号的驱动器号、 卷 GUID 路径或已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -RecoveryPassword 或 -rp 添加数字密码保护程序。如果尚未添加 数字密码保护程序,需要此参数以开始加密。保留此参数为空 可以生成随机数字密码 (推荐)。这些密码有特殊的格式 要求。提供任何参数(如 \"?\")可读取 要求。 -RecoveryKey 或 -rk 添加用于恢复的外部密钥保护程序。可选。提供 绝对目录路径,其中将保存包含随机 生成的外部密钥的文件。示例: \"E:\" -StartupKey 或 -sk 添加用于启动的外部密钥保护程序。如果计算机 没有受支持的 TPM 并且尚未添加,则此参数是 必需的。若要使用启动密钥,保存的外部密钥 文件必须位于 U 盘的根目录下。 因为 -RecoveryKey 和 -StartupKey 这两个参数均 生成外部密钥保护程序,所以保存的文件 可互换使用。 -Certificate 或 -cert 为数据卷添加公钥保护程序。系统将 查询用户的证书存储,以查找有效的 BitLocker 证书。如果确实找到一个 证书,则该证书将用作 BitLocker 加密证书。 如果找到两个或更多证书,则该操作将失败, 并且应该指定有效 BitLocker 证书的 指纹。可选。提供有效证书文件的 位置,或提供本地存在于证书存储 中的有效 BitLocker 证书的证书 指纹。 -TPMAndPIN 或 -tp 为 OS 卷添加 TPM 和 PIN 保护程序。可选。 系统将提示你输入计算机每次启动时都必须键入的 4 到 20 位数字 PIN。 因为仅 TPM 保护 会替代此保护程序,所以计算机上的任何 TPM 保护程序都将被删除和替换。 -TPMAndStartupKey 或 -tsk 为 OS 卷添加 TPM 和启动密钥保护程序。 可选。若要使用启动密钥,保存的文件必须位于 U 盘的根目录上。因为仅 TPM 保护 会替代此保护程序,所以计算机上的任何 TPM 保护程序都将被删除和替换。 -TPMAndPINAndStartupKey 或 -tpsk 为 OS 卷添加 TPM 和 PIN 及启动密钥保护程序。 将删除卷上的仅 TPM、TPM 和 PIN 及 TPM 和 启动密钥保护程序。 manage-bde -on Volume [{-RecoveryPassword|-rp} [NumericalPassword] ] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-UsedSpaceOnly|-used}] [{-EncryptionMethod|-em} {aes128|aes256|xts_aes128|xts_aes256}] [{-SkipHardwareTest|-s}] [{-Synchronous|-sync}] [{-DiscoveryVolumeType|-dv} {FAT32|[none]|[default]}] [{-ForceEncryptionType|-fet} {Hardware|Software}] [{-RemoveVolumeShadowCopies|-rvsc}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Encrypts the volume and turns BitLocker protection on. Use parameters to add key protectors for the encryption key. These protectors unlock access to BitLocker-encrypted data. Automatically adds a TPM protector to the OS volume if your computer has a supported TPM. For the OS volume, encryption begins on the next restart, after a hardware test.Parameter List: Volume Required. A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -RecoveryPassword or -rp Adds a Numerical Password protector. Required to begin encryption if one has not already been added. Leave the argument blank to generate a random numerical password (recommended). These passwords have special format requirements. Provide any argument such as \"?\" to read the requirements. -RecoveryKey or -rk Adds an External Key protector for recovery. Optional. Provide the absolute directory path where the file containing the randomly-generated external key will be saved. Example: \"E:\" -StartupKey or -sk Adds an External Key protector for startup. Required if the computer does not have a supported TPM and one has not already been added. To use a startup key, the saved external key file must be located on the root directory of a USB flash drive. Since both the -RecoveryKey and -StartupKey parameters produce External Key protectors, the saved files can be used interchangeably. -Certificate or -cert Adds a public key protector for the data volume. The user's certificate store is queried for a valid BitLocker certificate. If exactly one certificate is found, the certificate is used as the BitLocker encryption certificate. If two or more certificates are found the operation will fail and the thumbprint of a valid BitLocker certificate should be specified. Optional. Provide the location of a valid certificate file or provide the certificate thumbprint of a valid BitLocker certificate that will be present locally in the certificate store. -TPMAndPIN or -tp Adds a TPM And PIN protector for the OS volume. Optional. You will be prompted for a 4-20 digit numeric PIN that must be typed each time the computer starts. Since TPM-only protection overrides this protector, any TPM protector on the computer is removed and replaced. -TPMAndStartupKey or -tsk Adds a TPM And Startup Key protector for the OS volume. Optional. To use a startup key, the saved file must be located on the root directory of a USB flash drive. Since TPM-only protection overrides this protector, any TPM protector on the computer is removed and replaced. -TPMAndPINAndStartupKey or -tpsk Adds a TPM And PIN And Startup Key protector for the OS volume. TPM-only, TPM And PIN, and TPM And Startup Key protectors on the volume are removed.
0x40000105manage-bde -off Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 解密卷并关闭 BitLocker 保护。解密完成时 删除所有密钥保护器。参数列表: Volume 必需。后跟冒号的驱动器号、 卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -off C: manage-bde -off Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Decrypts the volume and turns BitLocker protection off. Removes all key protectors when decryption completes.Parameter List: Volume Required. A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -off C:
0x40000106manage-bde -pause Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 暂停加密、解密或擦除可用空间。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -pause C: manage-bde -pause Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Pauses encryption, decryption, or free space wipe.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -pause C:
0x40000107manage-bde -resume Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 暂停加密、解密或擦除可用空间。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -resume C: manage-bde -resume Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Resumes encryption, decryption, or free space wipe.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -resume C:
0x40000108manage-bde -lock Volume {-ForceDismount|-fd} [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 阻止访问 BitLocker 加密的数据。一旦数据卷被锁定, 只能使用该卷上其中一个密钥保护器对其进行解锁。 不删除任何密钥保护器。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ForceDismount 或 -fd 尝试锁定卷,即使该卷正在使用中。此参数 允许在应用程序以非独占方式访问卷时 锁定卷。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -lock e: manage-bde -lock e: -ForceDismount manage-bde -lock Volume {-ForceDismount|-fd} [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Prevents access to BitLocker-encrypted data. Once a data volume is locked, it can only be unlocked using one of the key protectors on the volume. No key protectors are deleted.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ForceDismount or -fd Attempts to lock the volume even if it is in use. This allows the volume to be locked when applications have non-exclusive access to the volume. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -lock e: manage-bde -lock e: -ForceDismount
0x40000109manage-bde -unlock Volume {[{-RecoveryPassword| -rp} NumericalPassword] | [{-RecoveryKey|-rk} PathToExternalKeyFile]} [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint} {-pin}] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} [{SID|domain\\user|domain\\group}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 允许使用恢复密码、恢复密钥、证书或密码 访问 BitLocker 加密的数据。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -RecoveryPassword 或 -rp 提供用于解锁卷的恢复密码 -RecoveryKey 或 -rk 提供用于解锁卷的外部密钥文件。 -Certificate 或 -cert 查询 BitLocker 证书的本地用户证书存储 以解锁卷。 -Password 或 -pw 提示密码以解锁卷。 -ADAccountOrGroup 或 -sid 尝试使用基于 SID 的标识保护器 解锁卷。 -ComputerName 或 -cn 在其他计算机上运行。示例:: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -unlock -? manage-bde -unlock e: -RecoveryPassword ... manage-bde -unlock e: -RecoveryKey \"f:\\File Folder\\Filename\" manage-bde -unlock e: -Certificate -cf \"c:\\File Folder\\Filename.cer\" manage-bde -unlock e: -pw manage-bde -unlock e: -sid manage-bde -unlock Volume {[{-RecoveryPassword| -rp} NumericalPassword] | [{-RecoveryKey|-rk} PathToExternalKeyFile]} [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint} {-pin}] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} [{SID|domain\\user|domain\\group}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Allows access to BitLocker-encrypted data with a recovery password, recovery key, certificate, or password.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -RecoveryPassword or -rp Provide a recovery password to unlock the volume. -RecoveryKey or -rk Provide an external key file to unlock the volume. -Certificate or -cert Query the local user certificate store for a BitLocker certificate to unlock the volume. -Password or -pw Prompt for a password to unlock the volume. -ADAccountOrGroup or -sid Attempt to unlock the volume using a SID-based Identity protector. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -unlock -? manage-bde -unlock e: -RecoveryPassword ... manage-bde -unlock e: -RecoveryKey \"f:\\File Folder\\Filename\" manage-bde -unlock e: -Certificate -cf \"c:\\File Folder\\Filename.cer\" manage-bde -unlock e: -pw manage-bde -unlock e: -sid
0x4000010Amanage-bde -unlock Volume {[{-RecoveryPassword| -rp} NumericalPassword] | [{-RecoveryKey|-rk} PathToExternalKeyFile]} [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint} {-pin}] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} [{SID|domain\\user|domain\\group}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 允许使用恢复密码、恢复密钥、证书或密码 访问 BitLocker 加密的数据。参数列表: Volume 必需。后跟冒号的驱动器号、 卷 GUID 路径或已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -RecoveryPassword 或 -rp 提供用于解锁卷的恢复密码。必须 之前已为加密卷创建了数字密 码保护器。 -RecoveryKey 或 -rk 提供用于解锁卷的外部密钥文件。如果未提供 -RecoveryPassword,则此参数是必需的。必须 之前已为加密卷创建了外部密钥保护器。 -Certificate 或 -cert 查询用户的证书存储,以查找一个证书, 该证书具有与用来加密卷的指纹相同的指纹。 如果找到了这样的证书,则将检索 私钥,并将其用于解锁卷。请指定证书文件 或证书的证书指纹。 如果需要一个 PIN 来 访问证书(例如使用智能卡时), 请指定 \"-pin\" 参数,然后系统将提示你输入 PIN。 -Password 或 -pw 提示用于解锁卷的密码。 -ADAccountOrGroup 或 -sid 尝试使用基于 SID 的标识保护器解锁卷。 如果提供帐户名或 SID,则尝试使用 具有相匹配 SID 的保护器进行解锁。否则,尝试 使用所有基于 SID 的标识保护器进行解锁。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\". 不能与 -Certificate 一起使用。 -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -unlock -? manage-bde -unlock e: -RecoveryPassword ... manage-bde -unlock e: -RecoveryKey \"f:\\File Folder\\Filename\" manage-bde -unlock e: -Certificate -cf \"C:\\File Folder\\Filename.cer\" manage-bde -unlock e: -pw manage-bde -unlock e: -sid S-1-5-21-...-513 manage-bde -unlock Volume {[{-RecoveryPassword| -rp} NumericalPassword] | [{-RecoveryKey|-rk} PathToExternalKeyFile]} [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint} {-pin}] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} [{SID|domain\\user|domain\\group}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Allows access to BitLocker-encrypted data with a recovery password, recovery key, certificate, or password.Parameter List: Volume Required. A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -RecoveryPassword or -rp Provide a recovery password to unlock the volume. You must have previously created a Numerical Password protector for the encrypted volume. -RecoveryKey or -rk Provide an external key file to unlock the volume. Required if -RecoveryPassword is not provided. You must have previously created an External Key protector for the encrypted volume. -Certificate or -cert The user's certificate store is queried for a certificate with an identical thumbprint as the one used to encrypt the volume. If a certificate is found, the private key is retrieved and used to unlock the volume. Specify either the certificate file or the certificate thumbprint of the certificate. If a PIN is required to access the certificate (such as for a smart card), specify the \"-pin\" parameter and you will be prompted to enter the PIN. -Password or -pw Prompts for a password to unlock the volume. -ADAccountOrGroup or -sid Attempt to unlock the volume using a SID-based Identity protector. If an account name or a SID is provided, attempt to unlock using a protector with a matching SID. Otherwise, try all SID-based Identity protectors to unlock. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\". Cannot be used in conjunction with -Certificate. -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -unlock -? manage-bde -unlock e: -RecoveryPassword ... manage-bde -unlock e: -RecoveryKey \"f:\\File Folder\\Filename\" manage-bde -unlock e: -Certificate -cf \"C:\\File Folder\\Filename.cer\" manage-bde -unlock e: -pw manage-bde -unlock e: -sid S-1-5-21-...-513
0x4000010Bmanage-bde -autounlock -enable Volumemanage-bde -autounlock -disable Volumemanage-bde -autounlock -clearallkeys OSVolume描述: 管理数据卷的自动解锁。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -enable 启用数据卷的自动解锁。 -disable 禁用数据卷的自动解锁。 -ClearAllKeys 删除操作系统卷上存储的所有外部密钥。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -autounlock -enable E: manage-bde -autounlock -disable E: manage-bde -autounlock -ClearAllKeys C: manage-bde -autounlock -enable Volumemanage-bde -autounlock -disable Volumemanage-bde -autounlock -clearallkeys OSVolumeDescription: Manages automatic unlocking of data volumes.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -enable Enables automatic unlocking for a data volume. -disable Disables automatic unlocking for a data volume. -ClearAllKeys Removes all stored external keys on the OS volume. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -autounlock -enable E: manage-bde -autounlock -disable E: manage-bde -autounlock -ClearAllKeys C:
0x4000010Cmanage-bde -autounlock -enable Volumemanage-bde -autounlock -disable Volumemanage-bde -autounlock -clearallkeys OSVolume描述: 管理数据卷的自动解锁。参数列表: Volume 必需。后跟冒号的驱动器号、 卷 GUID 路径或已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -enable 启用数据卷的自动解锁。此操作 在数据卷上创建外部密钥保护器 并将关联的外部密钥存储到受 BitLocker 保护的 OS 卷上。 -disable 禁用数据卷的自动解锁。此操作 从 OS 卷删除存储的外部密钥。 需要一个附加步骤从数据卷 删除外部密钥保护器。 -ClearAllKeys 删除 OS 卷上所有存储的外部密钥。此操作 禁用所有相关数据卷的自动解锁。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -autounlock -enable E: manage-bde -autounlock -disable E: manage-bde -autounlock -ClearAllKeys C: manage-bde -autounlock -enable Volumemanage-bde -autounlock -disable Volumemanage-bde -autounlock -clearallkeys OSVolumeDescription: Manages automatic unlocking of data volumes.Parameter List: Volume Required. A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -enable Enables automatic unlocking for a data volume. This action creates an External Key protector on the data volume and stores the associated external key onto the BitLocker-protected OS volume. -disable Disables automatic unlocking for a data volume. This action removes the stored external key from the OS volume. An additional step is necessary to delete the External Key protector from the data volume. -ClearAllKeys Removes all stored external keys on the OS volume. This action disables automatic unlocking of all associated data volumes. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -autounlock -enable E: manage-bde -autounlock -disable E: manage-bde -autounlock -ClearAllKeys C:
0x4000010Dmanage-bde -protectors -get Volume -parameter [arguments]manage-bde -protectors -add Volume -parameter [arguments]manage-bde -protectors -delete Volume -parameter [arguments]manage-bde -protectors -disable Volume -parameter [arguments]manage-bde -protectors -enable Volumemanage-bde -protectors -adbackup Volume -parameter [arguments]manage-bde -protectors -aadbackup Volume -parameter [arguments]描述: 管理加密密钥的保护方法。参数列表: Volume 驱动器号后跟冒号、卷 GUID 路径或已装入卷。示例: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -get 显示密钥保护方法。包含 \"-?\",用于查看参数帮助信息。 -add 添加密钥保护方法。包含 \"-?\",用于查看参数帮助信息。 -delete 删除密钥保护方法。包含 \"-?\",用于查看参数帮助信息。 -disable 暂停保护。通过取消对磁盘上可用加密密钥 的保护,允许任何人访问加密数据。不删除 任何密钥保护器。如果未指定 可选的 RebootCount 参数,则 OS 卷的 BitLocker 保护 将在 Windows 重新启动之后自动恢复。 如果指定了 RebootCount 参数,则 OS 卷的 BitLocker 保护 将在 Windows 重新启动次数达到 RebootCount 参数中指定的数量之后 恢复。 -enable 通过从磁盘上删除未受保护的加密密钥来启用 保护。所有密钥保护器都将生效。 -adbackup 备份驱动器的恢复信息。 -aadbackup 将驱动器的恢复信息备份到 Azure Active Directory。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -add -? manage-bde -protectors -get -? manage-bde -protectors -disable C: manage-bde -protectors -get Volume -parameter [arguments]manage-bde -protectors -add Volume -parameter [arguments]manage-bde -protectors -delete Volume -parameter [arguments]manage-bde -protectors -disable Volume -parameter [arguments]manage-bde -protectors -enable Volumemanage-bde -protectors -adbackup Volume -parameter [arguments]manage-bde -protectors -aadbackup Volume -parameter [arguments]Description: Manages protection methods for the encryption key.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -get Displays key protection methods. Include '-?' for parameters. -add Adds key protection methods. Include '-?' for parameters. -delete Deletes key protection methods. Include '-?' for parameters. -disable Suspends protection. Allows anyone to access encrypted data by making the encryption key available unsecured on disk. No key protectors are removed. If the optional RebootCount parameter is not specified, BitLocker protection of the OS volume automatically resumes after Windows is restarted. If a RebootCount parameter is specified, BitLocker protection of the OS volume will resume after Windows has been restarted the number of times specified in the RebootCount parameter. -enable Enables protection by removing the unsecured encryption key from disk. All key protectors take into effect. -adbackup Backs up recovery information for the drive. -aadbackup Backs up recovery information for the drive to Azure Active Directory. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -add -? manage-bde -protectors -get -? manage-bde -protectors -disable C:
0x4000010Emanage-bde -protectors -add Volume [{-ForceUpgrade}] [{-RecoveryPassword|-rp} [NumericalPassword]] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [-TPM] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 添加密钥保护方法。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ForceUpgrade 强制升级 BitLocker 版本。 -RecoveryPassword 或 -rp 添加数字密码保护器。 -RecoveryKey 或 -rk 添加用于恢复的外部密钥保护器。 -StartupKey 或 -sk 添加用于启动的外部密钥保护器。 -Certificate 或 -cert 为数据卷添加公钥保护器。 -TPMAndPIN 或 -tp 为 OS 卷添加 TPM 和 PIN 保护器。 -TPMAndStartupKey 或 -tsk 为 OS 卷添加 TPM 和启动密钥保护器。 -TPMAndPINAndStartupKey 或 -tpsk 为 OS 卷添加 TPM 和 PIN 及启动密钥保护器。 -tpm 为 OS 卷添加 TPM 保护器。 -Password 或 -pw Password 或 -pw 为卷添加密码密钥保护器。 -ADAccountOrGroup 或 -sid 为卷添加基于 SID 的标识保护程序。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -add e: -RecoveryPassword manage-bde -protectors -add e: -rp -rk h:\\ manage-bde -protectors -add e: -TPMAndPIN manage-bde -protectors -add e: -Certificate -cf \"c:\\File Folder\\Filename.cer\" manage-bde -protectors -add e: -pw manage-bde -protectors -add e: -sid Domain\\User manage-bde -protectors -add e: -sid Domain\\Machine$ -service manage-bde -protectors -add Volume [{-ForceUpgrade}] [{-RecoveryPassword|-rp} [NumericalPassword]] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [-TPM] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Adds key protection methods.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ForceUpgrade Forces the BitLocker version to be upgraded. -RecoveryPassword or -rp Adds a Numerical Password protector. -RecoveryKey or -rk Adds an External Key protector for recovery. -StartupKey or -sk Adds an External Key protector for startup. -Certificate or -cert Adds a public key protector for the data volume. -TPMAndPIN or -tp Adds a TPM And PIN protector for the OS volume. -TPMAndStartupKey or -tsk Adds a TPM And Startup Key protector for the OS volume. -TPMAndPINAndStartupKey or -tpsk Adds a TPM And PIN And Startup Key protector for the OS volume. -tpm Adds a TPM protector for the OS volume. -Password or -pw Adds a password key protector for the volume. -ADAccountOrGroup or -sid Adds a SID-based Identity protector for the volume. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -add e: -RecoveryPassword manage-bde -protectors -add e: -rp -rk h:\\ manage-bde -protectors -add e: -TPMAndPIN manage-bde -protectors -add e: -Certificate -cf \"c:\\File Folder\\Filename.cer\" manage-bde -protectors -add e: -pw manage-bde -protectors -add e: -sid Domain\\User manage-bde -protectors -add e: -sid Domain\\Machine$ -service
0x4000010Fmanage-bde -protectors -add Volume [{-RecoveryPassword|-rp} [NumericalPassword]] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [-TPM] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 添加密钥保护方法。一旦已添加密钥保护器, 就使用 \"manage-bde -on\" 加密。参数列表: Volume 必需。后跟冒号的驱动器号、 卷 GUID 路径或已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -RecoveryPassword 或 -rp 添加数字密码保护器。尚未添加数字 密码保护器时,需要此参数以开始加密。 将参数保留为空可以生成随机数字密码 (推荐)。这些密码有特殊的格式 要求。请提供任何参数(如 \"?\")以读取 这些要求。 -RecoveryKey 或 -rk 添加用于恢复的外部密钥保护器。可选。提供 一条绝对目录路径,其中将保存包含随机生成 的外部密钥的文件。示例: \"E:\" -StartupKey 或 -sk 添加用于启动的外部密钥保护器。如果计算机 没有受支持的 TPM 并且尚未添加 TPM,此参数 是必需的。若要使用启动密钥,保存的外部密钥 文件必须位于 U 盘的根目录上。 因为 -RecoveryKey 和 -StartupKey 这两个参数均 产生外部密钥保护器,所以保存的文件 可互换使用。 -Certificate 或 -cert 为数据卷添加公钥保护器。系统将查询用户的 证书存储,以查找有效的 BitLocker 证 书。 如果只找到一个证书, 则该证书将用作 BitLocker 加密 证书。如果找到两个或更多证书,则该操作将失败, 并且应该指定有效 BitLocker 证书的 指纹。可选。提供有效证书文件的 位置,或提供将本地存在 于证书存储中的 有效 BitLocker 证书的证书指纹。 -TPMAndPIN 或 -tp 为 OS 卷添加 TPM 和 PIN 保护器。可选。 为 OS 卷添加 TPM 和 PIN 保护器。可选。 系统将提示你键入计算机每次启动时都必须键入的 4 到 20 位数字 PIN。因为仅针对 TPM 的保护 会覆盖此保护器,所以计算机上的任何 TPM 保护器都将被删除或被替代。 -TPMAndStartupKey 或 -tsk 为 OS 卷添加 TPM 和启动密钥保护器。 可选。若要使用启动密钥,保存的文件必须位于 U 盘的根目录上。因为仅针对 TPM 的保护会覆盖该保护器,所以计算机上的任何 TPM 保护器都将被删除或被替代。 -TPMAndPINAndStartupKey 或 -tpsk 为 OS 卷添加 TPM 和 PIN 及启动密钥保护器。 将删除卷上的仅 TPM、TPM 和 PIN 及 TPM 和 启动密钥保护器。 -tpm 为 OS 卷添加 TPM 保护器。此保护器 指定仅针对 TPM 的保护并覆盖所有其他与 TPM 有关的保护器。TPM 和 PIN 保护器或 TPM 和启动密钥保护器都将被删除和被替代。 -Password 或 -pw 为数据卷添加密码密钥保护器。可选。 系统将提示你提供用于解锁设备 的密码。 -ADAccountOrGroup 或 -sid 为数据卷添加基于 SID 的标识保护程序。如果用户或 计算机有适当的凭据,则数据卷将自动解锁。 当指定计算机帐户时,请将 \"$\" 附加到计算机名中,并指定 -service 以指示 解锁应该在 BitLocker 服务 (而不是用户)上下文中进行。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -add e: -RecoveryPassword manage-bde -protectors -add e: -rp -rk h:\\ manage-bde -protectors -add e: -TPMAndPIN manage-bde -protectors -add e: -Certificate -cf \"c:\\File Folder\\Filename.cer\" manage-bde -protectors -add e: -pw manage-bde -protectors -add e: -sid Domain\\User manage-bde -protectors -add e: -sid Domain\\Machine$ -service manage-bde -protectors -add Volume [{-RecoveryPassword|-rp} [NumericalPassword]] [{-RecoveryKey|-rk} PathToExternalKeyDirectory] [{-StartupKey|-sk} PathToExternalKeyDirectory] [{-Certificate|-cert} {-cf PathToCertificateFile| -ct CertificateThumbprint}] [-TPM] [{-TPMAndPIN|-tp}] [{-TPMAndStartupKey|-tsk} PathToExternalKeyDirectory] [{-TPMAndPINAndStartupKey|-tpsk} -tsk PathToExternalKeyDirectory] [{-Password|-pw}] [{-ADAccountOrGroup|-sid} {SID|domain\\user|domain\\group} [-service]}] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Adds key protection methods. Use 'manage-bde -on' to encrypt once key protectors have been added.Parameter List: Volume Required. A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -RecoveryPassword or -rp Adds a Numerical Password protector. Required to begin encryption if one has not already been added. Leave the argument blank to generate a random numerical password (recommended). These passwords have special format requirements. Provide any argument such as \"?\" to read the requirements. -RecoveryKey or -rk Adds an External Key protector for recovery. Optional. Provide the absolute directory path where the file containing the randomly-generated external key will be saved. Example: \"E:\" -StartupKey or -sk Adds an External Key protector for startup. Required if the computer does not have a supported TPM and one has not already been added. To use a startup key, the saved external key file must be located on the root directory of a USB flash drive. Since both the -RecoveryKey and -StartupKey parameters produce External Key protectors, the saved files can be used interchangeably. -Certificate or -cert Adds a public key protector for the data volume. The user's certificate store is queried for a valid BitLocker certificate. If exactly one certificate is found, the certificate is used as the BitLocker encryption certificate. If two or more certificates are found the operation will fail and the thumbprint of a valid BitLocker certificate should be specified. Optional. Provide the location of a valid certificate file or provide the certificate thumbprint of a valid BitLocker certificate that will be present locally in the certificate store. -TPMAndPIN or -tp Adds a TPM And PIN protector for the OS volume. Optional. You will be prompted for a 4-20 digit numeric PIN that must be typed each time the computer starts. Since TPM-only protection overrides this protector, any TPM protector on the computer is removed and replaced. -TPMAndStartupKey or -tsk Adds a TPM And Startup Key protector for the OS volume. Optional. To use a startup key, the saved file must be located on the root directory of a USB flash drive. Since TPM-only protection overrides this protector, any TPM protector on the computer is removed and replaced. -TPMAndPINAndStartupKey or -tpsk Adds a TPM And PIN And Startup Key protector for the OS volume. TPM-only, TPM And PIN, and TPM And Startup Key protectors on the volume are removed. -tpm Adds a TPM protector for the OS volume. This protector specifies TPM-only protection and overrides any other TPM-related protectors. TPM And PIN or TPM And StartupKey protectors are removed and replaced. -Password or -pw Adds a password key protector for the volume. Optional. You will be prompted for a password that will be used to unlock the device. -ADAccountOrGroup or -sid Adds an SID-based Identity protector for the volume. The volume will automatically unlock if the user or computer has the proper credentials. When specifying a computer account, append a '$' to the computer name and specify -service to indicate that the unlock should happen in the context of the BitLocker service (instead of the user). -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -add e: -RecoveryPassword manage-bde -protectors -add e: -rp -rk h:\\ manage-bde -protectors -add e: -TPMAndPIN manage-bde -protectors -add e: -Certificate -cf \"c:\\File Folder\\Filename.cer\" manage-bde -protectors -add e: -pw manage-bde -protectors -add e: -sid Domain\\User manage-bde -protectors -add e: -sid Domain\\Machine$ -service
0x40000110manage-bde -protectors -get Volume [{-Type|-t} {RecoveryPassword| ExternalKey| Certificate| TPM| TPMAndStartupKey| TPMAndPIN| TPMAndPINAndStartupKey| Password| Identity}] [-ID KeyProtectorID] [{-SaveExternalKey|-sek} PathToExternalKeyDirectory] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 显示密钥保护方法。显示所有密钥保护器, 除非使用了可选参数。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -Type 或 -t 显示特定类型的密钥保护器。可选。 -id 显示具有特定标识符的密钥保护器。可选。 -SaveExternalKey 或 -sek 提供保存文件的绝对目录路径,该文件(这些文件) 包含所显示的外部密钥。这些外部密钥可以用作 启动密钥或恢复密钥。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -get C: manage-bde -protectors -get C: -Type recoverypassword manage-bde -protectors -get C: -SaveExternalKey \"f:\\Folder\" manage-bde -protectors -get Volume [{-Type|-t} {RecoveryPassword| ExternalKey| Certificate| TPM| TPMAndStartupKey| TPMAndPIN| TPMAndPINAndStartupKey| Password| Identity}] [-ID KeyProtectorID] [{-SaveExternalKey|-sek} PathToExternalKeyDirectory] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Displays key protection methods. All key protectors are shown unless optional parameters are used.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -Type or -t Displays key protectors of a certain type. Optional. -id Displays the key protector with a certain identifier. Optional. -SaveExternalKey or -sek Provide the absolute directory path to save file(s) containing displayed external key(s). These external key files may be used as startup or recovery keys. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -get C: manage-bde -protectors -get C: -Type recoverypassword manage-bde -protectors -get C: -SaveExternalKey \"f:\\Folder\"
0x40000111manage-bde -protectors -delete Volume [{-Type|-t} {RecoveryPassword| ExternalKey| Certificate| TPM| TPMAndStartupKey| TPMAndPIN| TPMAndPINAndStartupKey| Password| Identity}] [-ID KeyProtectorID] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 删除密钥保护方法。除非使用可选参数,否则将删除 所有密钥保护器。若要允许继续访问 BitLocker 加密 的数据,删除最后一个密钥保护器会禁用所有密钥 保护器。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -Type 或 -t 删除特定类型的密钥保护器。可选。 -id 删除具有特定标识符的密钥保护器。可选。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -delete C: -id {84E151C1...7A62067A512} manage-bde -protectors -delete C: -Type TPMAndStartupKey manage-bde -protectors -delete Volume [{-Type|-t} {RecoveryPassword| ExternalKey| Certificate| TPM| TPMAndStartupKey| TPMAndPIN| TPMAndPINAndStartupKey| Password| Identity}] [-ID KeyProtectorID] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Deletes key protection methods. All key protectors are removed unless optional parameters are used. To allow continued access to BitLocker-encrypted data, deleting the last protector disables all key protectors.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -Type or -t Deletes key protectors of a certain type. Optional. -id Deletes the key protector with a certain identifier. Optional. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -delete C: -id {84E151C1...7A62067A512} manage-bde -protectors -delete C: -Type TPMAndStartupKey
0x40000113错误: Manage-bde 无法在此版本 Windows 中管理受信任的平台模块(TPM)。若要管理“受信任的平台模块(TPM)”,请使用TPM 管理 MMC 管理单元或 TPM 管理 PowerShell cmdlet。 ERROR: Manage-bde cannot manage the Trusted Platform Module (TPM) in thisversion of Windows. To manage the Trusted Platform Module (TPM), use eitherthe TPM Management MMC snap-in or the TPM Management PowerShell cmdlets.
0x40000114manage-bde {-forcerecovery|-fr} [Volume] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 强制受 BitLocker 保护的 OS 在重新启动时进入恢复模式。 从 OS 卷删除所有与 TPM 有关的密钥保护器。计算机重新启动时, 仅恢复密码和恢复密钥可以解锁 OS。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -fr manage-bde -forcerecovery x: manage-bde {-forcerecovery|-fr} [Volume] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Forces a BitLocker-protected OS into recovery mode on restart. Deletes all TPM-related key protectors from the OS volume. On computer restart, only a recovery password or recovery key can unlock the OS.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -fr manage-bde -forcerecovery x:
0x40000115manage-bde -changepassword [Volume] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 修改数据卷的密码。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -changepassword e: manage-bde -changepassword [Volume] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Modifies password for a data volume.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -changepassword e:
0x40000116manage-bde -upgrade Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 升级 BitLocker 版本。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -upgrade C: manage-bde -upgrade Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Upgrades the BitLocker version.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -upgrade C:
0x40000117manage-bde -changepin [Volume] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 修改卷的 PIN。系统将提示你键入新 PIN。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -changepin e: manage-bde -changepin [Volume] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Modifies PIN for a volume. You will be prompted for a new PIN.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -changepin e:
0x40000118manage-bde {-changekey} [Volume] PathToExternalKeyDirectory [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 修改卷的启动密钥,该卷使用基于 TPM 的保护器提供保护。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" PathToExternalKeyDirectory 新启动密钥的保存路径。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -changekey c: d:\\ manage-bde {-changekey} [Volume] PathToExternalKeyDirectory [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Modifies the startup key for a volume protected with a TPM based protector.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" PathToExternalKeyDirectory The path to save the new startup key in. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -changekey c: d:\\
0x40000119manage-bde {-SetIdentifier|-si} Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 将卷上的卷标识符字段设置为组策略中 指定的值。该值可能由你的系统管理员进行管理。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -SetIdentifier C: manage-bde {-SetIdentifier|-si} Volume [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Set the volume identifier field on the volume to the value specified in the Group Policy. This value may be managed by your system administrator.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -SetIdentifier C:
0x4000011Amanage-bde -protectors -adbackup Volume -ID KeyProtectorID [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 备份驱动器的恢复信息。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -id 备份具有特定标识符的密钥保护器。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -adbackup C: -id {84E151C1...7A62067A512} manage-bde -protectors -adbackup Volume -ID KeyProtectorID [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Backs up recovery information for the drive.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -id Backs up the key protector with a certain identifier. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -adbackup C: -id {84E151C1...7A62067A512}
0x4000011Bmanage-bde {-KeyPackage|-kp} Volume -ID KeyProtectorID -path PathToKeyPackageDirectory [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 为指定的卷生成新的密钥数据包。该密钥数据包可以 与修复工具一起使用以修复损坏的磁盘。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入的卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -id 将密钥保护器与某个标识符一起使用。 -path 将创建密钥数据包的目录路径。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -KeyPackage C: -id {84E151C1...7A62067A512} -path \"f:\\Folder\" manage-bde {-KeyPackage|-kp} Volume -ID KeyProtectorID -path PathToKeyPackageDirectory [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Generates a new key package for the specified volume. The key package can be used in conjunction with the repair tool to repair corrupted disks.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -id Uses the key protector with a certain identifier. -path Directory path where the key package will be created. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -KeyPackage C: -id {84E151C1...7A62067A512} -path \"f:\\Folder\"
0x4000011Cmanage-bde {-WipeFreeSpace|-w} Volume [-Cancel] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 擦除卷上的可用空间会删除该空间中可能已存在 的任何数据片段。如果与仅使用数据选项 加密的卷一起使用,则会提供与使用完全加密选项加密的卷上的 相同级别的保护。参数列表: Volume 后跟冒号的驱动器号、卷 GUID 路径或 已装入的卷。示例: \"C:\"、 \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -Cancel 取消擦除可用空间。 -ComputerName or -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -w C: manage-bde -w -Cancel C: manage-bde {-WipeFreeSpace|-w} Volume [-Cancel] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Wipes the free space on the volume removing any data fragments that may have existed in the space. If used with a volume that was encrypted using the data only option provides the same level of protection as if the volume had been encrypted with the full encryption option.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -Cancel Cancels wipe of free space. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -w C: manage-bde -w -Cancel C:
0x4000011Dmanage-bde -protectors -disable Volume [{-RebootCount|-rc} argument] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 暂停保护。通过取消对磁盘上可用加密密钥的保护,允许任何人访问加密数据。 不删除任何密钥保护器。如果未指定可选的 RebootCount 参数,则 OS 卷的 BitLocker 保护将在 Windows 重新启动之后自动恢复。如果已指定可选的 RebootCount 参数,则 OS 卷的 BitLocker 保护将在 Windows 重启次数达到 RebootCount 参数 中指定的数量之后重新恢复。参数列表: Volume 后面跟着冒号、卷 GUID 路径或已装入卷的驱动器号。示例: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -RebootCount 或 -rc 对 OS 卷的保护被暂停并将在 Windows 重启次数 达到 RebootCount 参数中指定的数量之后重新恢复。 只有 0 和 15 之间的数字是其有效参数。 指定 0 则无限期地暂停保护。 如果未指定该参数,则 OS 卷的 BitLocker 保护将 在 Windows 重启之后自动恢复。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例 manage-bde -protectors -disable C: -rc 10 manage-bde -protectors -disable Volume [{-RebootCount|-rc} argument] [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Suspends protection. Allows anyone to access encrypted data by making the encryption key available unsecured on disk. No key protectors are removed. If the optional RebootCount parameter is not specified, BitLocker protection of the OS volume automatically resumes after Windows is restarted. If a RebootCount parameter is specified, BitLocker protection of the OS volume will resume after Windows has been restarted the number of times specified in the Rebootcount parameter.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -RebootCount or -rc Protection of the OS volume is suspended and will resume after Windows has been restarted the number of times specified in the RebootCount parameter. Only a number between 0 and 15 is a valid argument. Specify 0 to suspend protection indefinitely. If this parameter is not specified BitLocker protection will automatically resume for the OS volume when Windows is restarted. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -disable C: -rc 10
0x4000011E-Password 或 -pw 为卷添加密码密钥保护程序。可选。系统 将提示你输入密码以在设备上 启用 BitLocker。 -ADAccountOrGroup 或 -sid 为卷添加基于 SID 的标识保护程序。 如果用户或计算机具有适当的凭据, 则此卷将自动解锁。当指定计算机帐户时, 在计算机名后面附加一个 \"$\" 并 指定 -service 以指示应该在 BitLocker 服务 (而不是用户)的上下文中进行解锁。 -UsedSpaceOnly 或 -used 将加密模式设置为“仅加密已用空间”。 卷中包含已用空间的部分将被加密, 而可用空间将不会加密。如果未指定,则加密卷上的所有 已用空间和可用空间。 -EncryptionMethod 或 -em 配置用于未加密卷的加密算法和 密钥大小。在 AES 128 位(\"aes128\")、 AES 256 位(\"aes256\")、XTS-AES 128 位(\"xts_aes128\")或 XTS-AES 256 位(\"xts_aes256\")之间进行选择。除非另外指定, 否则使用 AES 128 位对磁盘进行加密。 -SkipHardwareTest 或 -s 在未经硬件测试的情况下开始加密。可选。如果 未指定,则必须重新启动并通过硬件测试,然后 才能在 OS 卷上开始加密。此测试检查 TPM 是否按预期工作以及计算机能否在启动期间 从 U 盘读取外部密钥文件。 -Synchronous 或 -sync 强制 manage-bde 等待,直到 -on 命令完成, 然后才显示命令提示符。此开关仅适用 于启用 BitLocker 时。 -DiscoveryVolumeType 或 -dv 定义要用于发现卷的文件系统。 早期版本的 Windows 无法识别 本机 BitLocker 卷(“[无]”);数据无法访问并且 操作系统可能会提出格式化驱动器。 发现卷是由早期版本的 Windows 识别的覆盖。它还提供一个应用程序, 以提供对加密数据的访问。 如果未指定此参数或使用“[默认值]”, 则使用 FAT32 发现卷(如果此卷包含 FAT 文件系统)。 -ForceEncryptionType 或 -fet 强制 BitLocker 使用软件或硬件加密。 如果选择了 \"hardware\" 参数,但驱动器不支持 硬件加密,则 manage-bde 将返回错误。 如果组策略禁用所选参数,则 manage-bde 返回 错误。 -RemoveVolumeShadowCopies 或 -rvsc 强制删除卷的卷影副本。 此后,你将无法使用以前的 系统还原点还原此卷。 -ComputerName 或 -cn 在另一台计算机上运行。示例: \"ComputerX\", \"127.0.0.1\" -? 或 /? 显示简要帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -on C: -RecoveryPassword manage-bde -on C: -RecoveryKey e:\\ -RecoveryPassword manage-bde -on C: -rp -rk \"f:\\Folder\" -SkipHardwareTest manage-bde -on C: -rp -StartupKey \"f:\\\\\" manage-bde -on C: -rp -TPMAndPIN -em aes128 manage-bde -on E: -rp -Certificate -cf \"C:\\File Folder\\Filename.cer\" manage-bde -on E: -pw manage-bde -on E: -UsedSpaceOnly manage-bde -on E: -sid Domain\\User manage-bde -on E: -sid Domain\\Machine$ -service -Password or -pw Adds a password key protector for the volume. Optional. You will be prompted for a password to turn on BitLocker on the device. -ADAccountOrGroup or -sid Adds a SID-based Identity protector for the volume. The volume will automatically unlock if the user or computer has the proper credentials. When specifying a computer account, append a '$' to the computer name and specify -service to indicate that the unlock should happen in the context of the BitLocker service (instead of the user). -UsedSpaceOnly or -used Sets the encryption mode to Used Space Only encryption. The sections of the volume containing used space will be encrypted, but the free space will not. If not specified, all used space and free space on the volume will be encrypted. -EncryptionMethod or -em Configures the encryption algorithm and key size used for an unencrypted volume. Choose between AES 128 bit (\"aes128\"), AES 256 bit (\"aes256\"), XTS-AES 128 bit (\"xts_aes128\") or XTS-AES 256 bit (\"xts_aes256\"). Unless otherwise specified, AES 128 bit is used to encrypt the disk. -SkipHardwareTest or -s Begins encryption without a hardware test. Optional. If not specified, you must restart and pass a hardware test before encryption will begin on the OS volume. The test checks whether the TPM works as expected and whether the computer can read an external key file from a USB drive during boot. -Synchronous or -sync Forces manage-bde to wait until the -on command has finished before displaying the command prompt. This switch only applies when turning on BitLocker. -DiscoveryVolumeType or -dv Define the file system to use for the discovery volume. A native BitLocker volume (\"[none]\") is not recognized by earlier versions of Windows; the data is not accessible and the OS might offer to format the drive. The discovery volume is an overlay that is recognized by earlier versions of Windows. It also provides an application to provide access to the encrypted data. If this parameter is not specified or \"[default]\" a FAT32 discovery volume is used if the volume contains a FAT file system. -ForceEncryptionType or -fet Forces BitLocker to use either software or hardware encryption. If the \"hardware\" parameter is selected, but the drive does not support hardware encryption, manage-bde returns an error. If group policy forbids the selected parameter, manage-bde returns an error. -RemoveVolumeShadowCopies or -rvsc Forces deletion of Volume Shadow Copies for the volume. You will not be able to restore this volume using previous system restore points afterwards. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -on C: -RecoveryPassword manage-bde -on C: -RecoveryKey e:\\ -RecoveryPassword manage-bde -on C: -rp -rk \"f:\\Folder\" -SkipHardwareTest manage-bde -on C: -rp -StartupKey \"f:\\\\\" manage-bde -on C: -rp -TPMAndPIN -em aes128 manage-bde -on E: -rp -Certificate -cf \"C:\\File Folder\\Filename.cer\" manage-bde -on E: -pw manage-bde -on E: -UsedSpaceOnly manage-bde -on E: -sid Domain\\User manage-bde -on E: -sid Domain\\Machine$ -service
0x4000020C计算机名: %1!s! Computer Name: %1!s!
0x4000020D卷 %1!s! [%2!s!] Volume %1!s! [%2!s!]
0x4000020E[数据卷] [Data Volume]
0x4000020F[OS 卷] [OS Volume]
0x40000210必需的操作: ACTIONS REQUIRED:
0x40000211%1!d!。将此数字恢复密码保存在你计算机之外的 安全位置: %2!s! 若要防止数据丢失,请立即保存此密码。此密码有助于 确保你可以对加密的卷进行解锁。 %1!d!. Save this numerical recovery password in a secure location away from your computer: %2!s! To prevent data loss, save this password immediately. This password helps ensure that you can unlock the encrypted volume.
0x40000212%1!d!。请将存有外部密钥文件的 U 盘插入计算机。 %1!d!. Insert a USB flash drive with an external key file into the computer.
0x40000213%1!d!。重新启动计算机以运行硬件测试。 (键入 \"shutdown /?\" 获取命令行说明。) %1!d!. Restart the computer to run a hardware test. (Type \"shutdown /?\" for command line instructions.)
0x40000214%1!d!。键入 \"manage-bde -status\" 以检查硬件测试是否成功。 %1!d!. Type \"manage-bde -status\" to check if the hardware test succeeded.
0x40000215注意: 硬件测试成功后将开始加密。 NOTE: Encryption will begin after the hardware test succeeds.
0x40000300可以使用 BitLocker 驱动器加密保护的磁盘卷: Disk volumes that can be protected withBitLocker Drive Encryption:
0x40000301大小: %1!s! GB Size: %1!s! GB
0x40000302转换状态: %1!s! Conversion Status: %1!s!
0x40000303已加密百分比: %1!s!%% Percentage Encrypted: %1!s!%%
0x40000304加密方法: %1!s! Encryption Method: %1!s!
0x40000305保护状态: %1!s!%2!s! Protection Status: %1!s!%2!s!
0x40000306锁定状态: %1!s! Lock Status: %1!s!
0x40000307自动解锁: %1!s! Automatic Unlock: %1!s!
0x40000308密钥保护器: 找不到 Key Protectors: None Found
0x40000309密钥保护器: Key Protectors:
0x4000030A%1!s!%2!s! %1!s!%2!s!
0x4000030B错误: 硬件测试失败,代码为 0x%1!08x!。已删除全部密钥保护器。 硬件测试失败的原因可能有: 1. 找不到存有外部密钥文件的 U 盘。 - 将存有外部密钥文件的 U 盘插入计算机。 - 如果此故障仍然存在,则计算机启动时将无法读取 U 盘。你可能无法在启动时使用外部密钥解除 对 OS 卷的锁定。 2. U 盘上的外部密钥文件已损坏。 - 尝试使用其他 U 盘来存储外部密钥文件。 3. TPM 已关闭。 - 若要管理“受信任的平台模块(TPM)”,请使用 TPM 管理 MMC 管理单元 或 TPM 管理 PowerShell cmdlet。 4. TPM 检测到 OS 启动组件中的更改。 - 从计算机中移除任何可启动的 CD 或 DVD。 - 如果此故障仍然存在,请检查是否已安装最新的固件和 BIOS 升级版本, 另请检查 TPM 是否正常工作。 5. 提供的 PIN 不正确。 6. TPM 存储根密钥(SRK)含有不兼容的授权值。 - 若要重置此值,请运行 TPM 初始化向导。 必需的操作: 1. 解决上述硬件测试故障。 2. 重新运行命令启用 BitLocker。 ERROR: The hardware test failed with code 0x%1!08x!. All key protectorswere removed. Possible reasons that the hardware test failed are: 1. A USB flash drive with an external key file was not found. - Insert a USB flash drive with an external key file into the computer. - If this failure persists, the computer cannot read USB drives during boot. You may not be able to use external keys to unlock the OS volume during boot. 2. The external key file on the USB flash drive was corrupt. - Try a different USB flash drive to store the external key file. 3. The TPM is off. - To manage the Trusted Platform Module (TPM), use either the TPM Management MMC snap-in or the TPM Management PowerShell cmdlets. 4. The TPM detected a change in OS boot components. - Remove any bootable CD or DVD from the computer. - If this failure persists, check that the latest firmware and BIOS upgrades are installed, and that the TPM is otherwise working properly. 5. The provided PIN was incorrect. 6. The TPM storage root key (SRK) has an incompatible authorization value. - To reset this value, run the TPM Initialization Wizard. ACTIONS REQUIRED: 1. Resolve the hardware test failure above. 2. Re-run the command to turn on BitLocker.
0x4000030D标识字段: %1!s! Identification Field: %1!s!
0x40000405注意: 此命令未创建任何新密钥保护器。键入 \"manage-bde -protectors -add -?\" 获取有关添加更多密钥保护器的信息。 NOTE: This command did not create any new key protectors. Type\"manage-bde -protectors -add -?\" for information on adding more key protectors.
0x40000407注意: 加密已经完成。 NOTE: Encryption is already complete.
0x40000408注意: 加密已经在进行中。键入 \"manage-bde -status -?\" 获取有关加密状态的信息。加密完成时,将启用 BitLocker 保护。 NOTE: Encryption is already in progress.Type \"manage-bde -status -?\" for information on the encryption status.BitLocker protection will be on when encryption completes.
0x40000409已启用 BitLocker 保护。 BitLocker protection is already on.
0x4000040A已通过启用密钥保护器启用了 BitLocker 保护。 Turned on BitLocker protection by enabling key protectors.
0x40000415已擦除的百分比: %1!s!%% Percentage Wiped: %1!s!%%
0x40000416正在尝试执行卷的同步完全加密。这可能需要一些时间。请稍候。 Attempting to perform synchronous full encryption of the volume.This may take some time. Please wait.
0x40000417正在尝试同步执行卷的“仅加密已用空间”。这可能需要一些时间。请稍候。 Attempting to perform synchronous Used Space Only encryption of the volume.This may take some time. Please wait.
0x4000041ABitLocker 保护将暂停,直到为卷创建密钥保护程序为止。若要在卷上实现 BitLocker 保护,请添加密钥保护器。 BitLocker protection is suspended until key protectors are created for thevolume. To enforce BitLocker protection on this volume, add a key protector.
0x40000420注意: 如果 -on 开关无法添加密钥保护器或开始加密,则可能需要先调用 \"manage-bde -off\",然后再尝试 -on。 NOTE: If the -on switch has failed to add key protectors or start encryption,you may need to call \"manage-bde -off\" before attempting -on again.
0x40000605键入 \"manage-bde -resume -?\" 获取有关继续加密的信息。 Type \"manage-bde -resume -?\" for information on resuming encryption.
0x40000606有关继续擦除可用空间的信息,请键入 \"manage-bde -resume -?\"。 Type \"manage-bde -resume -?\" for information on resuming the free space wipe.
0x40000607有关卷状态的信息,请键入 \"manage-bde -status -?\"。 Type \"manage-bde -status -?\" for information on the status of the volume.
0x4000090D请输入此证书的密码: %0 Enter the password for this certificate: %0
0x4000090E请输入密码以解锁此卷: %0 Enter the password to unlock this volume: %0
0x40000A00已启用自动解锁。 Automatic unlock enabled.
0x40000B00所有密钥保护器 All Key Protectors
0x40000B01类型 %1!s! 的密钥保护器 Key Protectors of Type %1!s!
0x40000B02ID 为 %1!s! 的密钥保护器 Key Protector with ID %1!s!
0x40000B03错误: 找不到密钥保护器。 ERROR: No key protectors found.
0x40000B04%1!s!: %1!s!:
0x40000B07ID: %1!s! ID: %1!s!
0x40000B08外部密钥文件名称: %1!s! External Key File Name: %1!s!
0x40000B09密码: %1!s! Password: %1!s!
0x40000B0A证书指纹: %1!s! Certificate Thumbprint: %1!s!
0x40000B0B证书指纹: %1!s! 友好名称: %2!s! Certificate Thumbprint: %1!s! Friendly Name: %2!s!
0x40000B11SID: %1!s! SID: %1!s!
0x40000B12帐户名: %1!s! Account Name: %1!s!
0x40000B13(使用 BitLocker 服务上下文解锁) (Unlock using BitLocker Service Context)
0x40000B14PCR 验证配置文件: %1!s! PCR Validation Profile: %1!s!
0x40000B15无%0 None%0
0x40000B16(使用安全引导进行完整性验证) (Uses Secure Boot for integrity validation)
0x40000D00添加的密钥保护器: Key Protectors Added:
0x40000D0C请键入 PIN 以用来保护此卷: %0 Type the PIN to use to protect the volume: %0
0x40000D0D请再次键入 PIN 以确认: %0 Confirm the PIN by typing it again: %0
0x40000D0E请键入密码以用来保护此卷: %0 Type the password to use to protect the volume: %0
0x40000D0F请再次键入密码以确认: %0 Confirm the password by typing it again: %0
0x40001102请键入新密码: %0 Type the new password: %0
0x40001103请再次键入新密码以确认: %0 Confirm the new password by typing it again: %0
0x40001201卷已经具有最新版本的 BitLocker。 The volume already has the latest version of BitLocker.
0x40001302你的 PIN 已经成功更新。 Your PIN has been successfully updated.
0x40001304请键入新 PIN: %0 Type the new PIN: %0
0x40001305请再次键入新 PIN 以确认: %0 Confirm the new PIN by typing it again: %0
0x40001500卷标识符已经设置为 %1!s!。 The volume identifier has been set to %1!s!.
0x40001601已成功将恢复信息备份到 Active Directory。 Recovery information was successfully backed up to Active Directory.
0x40001700已在目录中成功创建密钥数据包: %1!s! The key package was successfully created in directory: %1!s!
0x40004000未知%0 Unknown%0
0x40004001标签未知%0 Label Unknown%0
0x40004002已启用%0 Enabled%0
0x40004003已禁用%0 Disabled%0
0x40004004完全解密%0 Fully Decrypted%0
0x40004005完全加密%0 Fully Encrypted%0
0x40004006加密进行中%0 Encryption in Progress%0
0x40004007解密进行中%0 Decryption in Progress%0
0x40004008加密暂停%0 Encryption Paused%0
0x40004009解密暂停%0 Decryption Paused%0
0x4000400A已锁定%0 Locked%0
0x4000400B已解锁%0 Unlocked%0
0x4000400C保护关闭%0 Protection Off%0
0x4000400D保护已启用%0 Protection On%0
0x4000400F有扩散器的 AES 128%0 AES 128 with Diffuser%0
0x40004010有扩散器的 AES 256%0 AES 256 with Diffuser%0
0x40004011AES 128%0 AES 128%0
0x40004012AES 256%0 AES 256%0
0x40004013外部密钥%0 External Key%0
0x40004014(自动解锁所必需的)%0 (Required for automatic unlock)%0
0x40004015数字密码%0 Numerical Password%0
0x40004016TPM%0 TPM%0
0x40004017TPM 和启动密钥%0 TPM And Startup Key%0
0x40004018TPM 和 PIN%0 TPM And PIN%0
0x40004019TPM 和 PIN 以及启动密钥%0 TPM And PIN And Startup Key%0
0x4000401A智能卡(基于证书)%0 Smart Card (Certificate Based)%0
0x4000401B密码%0 Password%0
0x4000401CBitLocker 版本: %1!s! BitLocker Version: %1!s!
0x4000401D2.0%0 2.0%0
0x4000401EWindows Vista%0 Windows Vista%0
0x40004022数据发现代理(基于证书)%0 Data Recovery Agent (Certificate Based)%0
0x40004023网络(基于证书)%0 Network (Certificate Based)%0
0x40004024仅加密了已用空间%0 Used Space Only Encrypted%0
0x40004025加密方法: 硬件加密 - %1!s! Encryption Method: Hardware Encryption - %1!s!
0x40004026标识%0 Identity%0
0x40004027(基于 SID)%0 (SID-based)%0
0x40004028(还能重新启动 %1!u! 次)%0 (%1!u! reboots left)%0
0x40004029XTS-AES 128%0 XTS-AES 128%0
0x4000402AXTS-AES 256%0 XTS-AES 256%0
0x4000402Bmanage-bde -protectors -aadbackup Volume -ID KeyProtectorID [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]描述: 备份驱动器的恢复信息。参数列表: Volume 驱动器号后跟冒号、卷 GUID 路径或 已装入卷。示例: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ 或 \"C:\\MountVolume\" -id 备份具有特定标识符的密钥保护器。 -ComputerName 或 -cn 在其他计算机上运行。示例: \"ComputerX\"、\"127.0.0.1\" -? 或 /? 显示简略帮助。示例: \"-ParameterSet -?\" -Help 或 -h 显示完整帮助。示例: \"-ParameterSet -h\"示例: manage-bde -protectors -aadbackup C: -id {84E151C1...7A62067A512} manage-bde -protectors -aadbackup Volume -ID KeyProtectorID [{-ComputerName|-cn} ComputerName] [{-?|/?}] [{-Help|-h}]Description: Backs up recovery information for the drive.Parameter List: Volume A drive letter followed by a colon, a volume GUID path or a mounted volume. Example: \"C:\", \\\\?\\Volume{26a21bda-a627-11d7-9931-806e6f6e6963}\\ or \"C:\\MountVolume\" -id Backs up the key protector with a certain identifier. -ComputerName or -cn Runs on another computer. Examples: \"ComputerX\", \"127.0.0.1\" -? or /? Displays brief help. Example: \"-ParameterSet -?\" -Help or -h Displays complete help. Example: \"-ParameterSet -h\"Examples: manage-bde -protectors -aadbackup C: -id {84E151C1...7A62067A512}
0x4000402C已成功将恢复信息备份到 Azure Active Directory。 Recovery information was successfully backed up to Azure Active Directory.
0x4000402DAES 128 (存储控制器协助)%0 AES 128 (Storage controller assisted)%0
0x4000402EAES 256 (存储控制器协助)%0 AES 256 (Storage controller assisted)%0
0x4000402FXTS-AES 128 (存储控制器协助)%0 XTS-AES 128 (Storage controller assisted)%0
0x40004030XTS-AES 256 (存储控制器协助)%0 XTS-AES 256 (Storage controller assisted)%0
0x80000217警告: 脚本 manage-bde.wsf 不受支持。请使用 manage-bde.exe。 WARNING: The script manage-bde.wsf is not supported. Please use manage-bde.exe.
0x80000D08警告: 未添加数字密码。计算机上的 FIPS 组策略设置阻止创建恢复密码。 WARNING: The numerical password was not added. The FIPS Group Policy settingon the computer prevents recovery password creation.
0x80000D12警告:“%1!s!”未添加到卷。此卷上已存在用于此帐户的基于 SID 的标识保护器。此卷只允许每个帐户使用一个基于 SID 的标识保护器。 WARNING: \"%1!s!\" was not added to the volume.A SID-based Identity protector for this account already exists on this volume.Only one SID-based Identity protector per account is allowed for this volume.
0x80000E02警告: 已成功执行命令,但是目标计算机上不支持为此命令指定的可选参数并且已忽略该参数。 WARNING: The command was performed successfully, however the optionalparameters specified for this command were not supported on the targetcomputer and were ignored.
0x80001004只有恢复密码或恢复密钥可以解锁卷 %1!s!。 Only a recovery password or recovery key can unlock volume %1!s!.
0xC0000200错误: -cn 或 -ComputerName 后面必须跟计算机名 ERROR: -cn or -ComputerName must be followed by a computer name
0xC0000201错误: 不能指定多个计算机 ERROR: Cannot specify multiple computers
0xC0000202错误 不能指定多个卷 ERROR Cannot specify multiple volumes
0xC0000203错误: 需要卷号。 ERROR: A volume letter is required.
0xC0000204错误: 由于卷已锁定,此操作无法执行。 ERROR: The operation cannot be performed because the volume is locked.
0xC0000205错误: 访问所需资源的尝试被拒绝。检查你是否具有此计算机上的管理员权限。 ERROR: An attempt to access a required resource was denied.Check that you have administrative rights on the computer.
0xC0000206错误: 连接到 BitLocker 管理界面时发生错误。如果指定了 \"-cn\" 参数,请检查计算机名是否正确。 ERROR: An error occurred while connecting to the BitLocker managementinterface.If the \"-cn\" parameter was specified, check that the computer name is correct.
0xC0000207错误: 发生了一个错误(代码 0x%1!08x!): ERROR: An error occurred (code 0x%1!08x!):
0xC0000208错误: 无效语法。不能理解 \"%1!s!\"。键入 \"manage-bde -?\" 获取用法。 ERROR: Invalid Syntax.\"%1!s!\" was not understood.Type \"manage-bde -?\" for usage.
0xC0000209错误: 无效语法。不能在同一命令中多次指定 \"%1!s!\"。键入 \"manage-bde -?\" 获取用法。 ERROR: Invalid Syntax.\"%1!s!\" cannot be specified multiple times in the same command.Type \"manage-bde -?\" for usage.
0xC000020A错误: 参数 \"%1!s!\" 需要一个参数。 ERROR: Parameter \"%1!s!\" requires an argument.
0xC000020B错误: 缺少所需的参数。键入 \"manage-bde -?\" 获取用法。 ERROR: Missing required parameter.Type \"manage-bde -?\" for usage.
0xC0000216错误: 执行此操作时,组件意外地返回 FALSE。 ERROR: While performing the operation, a component unexpectedly returned FALSE.
0xC0000218错误: 输入的值不匹配。 ERROR: The values you have entered do not match.
0xC0000219错误: 输入的值超出所允许的 %1!d! 个字符的最大长度。 ERROR: The value you have entered exceeded the maximum allowed length of%1!d! characters.
0xC000030C错误: 没有可以使用 BitLocker 驱动器加密进行保护的磁盘卷。 ERROR: There are no disk volumes that can be protected with BitLocker DriveEncryption.
0xC000030E错误: BitLocker 无法打开卷 %1!s!。这可能是由于该卷不存在,或者它并非有效BitLocker 卷。 ERROR: The volume %1!s! could not be opened by BitLocker.This may be because the volume does not exist, or because it is not a validBitLocker volume.
0xC0000400错误: BitLocker 保护操作系统卷时需要指定参数 \"-StartupKey\" 和 \"-Password\"。键入 \"manage-bde -on -?\" 获取详细信息。 ERROR: Specifying the parameter '-StartupKey' or '-Password' is required toBitLocker-protect the OS volume.Type \"manage-bde -on -?\" for more information.
0xC0000401错误: 需要数字恢复密码来启用 BitLocker保护。在命令中包含 \"-RecoveryPassword\" 可以随机生成此数字密码。键入 \"manage-bde -on -help\" 获取详细信息。 ERROR: A numerical recovery password is required to turn on BitLockerprotection.Include \"-RecoveryPassword\" in the command to randomly generate this numericalpassword.Type \"manage-bde -on -help\" for more information.
0xC0000402错误: 要启用 BitLocker,必须存在恢复方法。在命令行中包含 \"-RecoveryKey [path]\" 以生成并保存恢复密钥。未添加密钥保护器。 ERROR: To turn on BitLocker, a recovery method must exist. Include\"-RecoveryKey [path]\" in the command line to generate and save a recovery key.No key protectors were added.
0xC0000403错误: 未指定密钥保护器。 ERROR: No key protectors were specified.
0xC0000404错误: 加密方法“%1!s!”无效。有效的加密方法为: aes128、aes256、xts_aes128、xts_aes256。加密方法 aes128_diffuser 和 aes256_diffuser 已弃用。 ERROR: Invalid encryption method '%1!s!'.Valid encryption methods: aes128, aes256, xts_aes128, xts_aes256.Encryption methods aes128_diffuser and aes256_diffuser are deprecated.
0xC000040C错误: 无法将 TPM 用于保护此卷。TPM 存储根密钥(SRK)具有不兼容的授权值。若要重置此值,请运行 TPM 初始化向导(tpminit.exe)。 ERROR: The TPM cannot be used to protect this volume. The TPM Storage RootKey (SRK) has an incompatible authorization value.To reset this value, run the TPM Initialization Wizard (tpminit.exe).
0xC000040D错误: 无法将 TPM 用于保护此卷。TPM 已关闭。若要管理“受信任的平台模块(TPM)”,请使用 TPM 管理MMC 管理单元或 TPM 管理 PowerShell cmdlet。 ERROR: The TPM cannot be used to protect this volume. The TPM is off.To manage the Trusted Platform Module (TPM), use either the TPM ManagementMMC snap-in or the TPM Management PowerShell cmdlets.
0xC000040E错误: 无法将 TPM 用于保护此卷。TPM 没有所有者设置。若要管理“受信任的平台模块(TPM)”,请使用 TPM 管理MMC 管理单元或 TPM 管理 PowerShell cmdlet。 ERROR: The TPM cannot be used to protect this volume. The TPM does not havean owner set.To manage the Trusted Platform Module (TPM), use either the TPM ManagementMMC snap-in or the TPM Management PowerShell cmdlets.
0xC0000410错误: 发现卷的类型“%1!s!”无效。有效的卷发现类型为: FAT32、[无]、[默认]。 ERROR: Invalid discovery volume type '%1!s!'.Valid volume discovery types: FAT32, [none], [default].
0xC0000411错误: 目标计算机返回一个有关发现卷参数的错误。较早版本的 Windows 不支持创建发现卷。 ERROR: The target machine returned an error on the discovery volume argument.Earlier versions of Windows do not support discovery volume creation.
0xC0000412错误: 若要在预安装或恢复环境中启用 BitLocker,则 TPM 必须存在、已启用并已激活。如果计算机具有 TPM,请将 BIOS 配置为允许操作系统使用 TPM。 ERROR: To turn on BitLocker in a pre-installation or recovery environment, aTPM must be present, enabled, and activated. If the computer has a TPM, pleaseconfigure the BIOS to allow the operating system to use the TPM.
0xC0000413错误: 若要在预安装或恢复环境中启用 BitLocker,则必须启用并激活 TPM。若要管理“受信任的平台模块(TPM)”,请使用 TPM 管理 MMC 管理单元或 TPM 管理 PowerShell cmdlet。 ERROR: To turn on BitLocker in a pre-installation or recovery environment, theTPM must be enabled and activated.To manage the Trusted Platform Module (TPM), use either the TPM ManagementMMC snap-in or the TPM Management PowerShell cmdlets.
0xC000041C错误: 若要在此卷上启用具有基于 SID 的标识保护器的 BitLocker,你必须至少提供一个附加保护器用于恢复。 ERROR: To turn on BitLocker with a SID-based Identity protector on this volume,you must provide at least one additional protector for recovery.
0xC000041D错误: 加密类型“%1!s!”无效。有效的卷加密类型: 硬件、软件。 ERROR: Invalid encryption type '%1!s!'.Valid volume encryption types: Hardware, Software.
0xC000041E错误: 加密方法 aes128_Diffuser 和 aes256_Diffuser已弃用。有效的卷加密方法: aes128、aes256、xts_aes128、xts_aes256。 ERROR: The encryption methods aes128_Diffuser and aes256_Diffuserare deprecated.Valid volume encryption methods: aes128, aes256, xts_aes128, xts_aes256.
0xC000041F错误: 无法在该卷上启用 BitLocker,原因是其中包含卷影副本。请使用 -RemoveVolumeShadowCopies 选项删除所有卷影副本。此后,你将无法使用以前的系统恢复点来恢复该卷。 ERROR: BitLocker cannot be enabled on the volume because it containsa Volume Shadow Copy. Use the -RemoveVolumeShadowCopies option to deleteall Volume Shadow Copies. You will not be able to restore this volume using previous system restore points afterwards.
0xC0000501错误: 此卷存储可以对其他卷进行自动解锁的一个或多个外部密钥。必须首先删除此类密钥,才能解锁此卷。所需操作:1. 为了防止数据丢失,检查关联数据卷是否存在 恢复密码或恢复密钥。2. 键入 \"manage-bde -autounlock -ClearAllKeys Volume\" 删除存储的 一个或多个外部密钥。 ERROR: This volume stores external key(s) that can automatically unlockother volumes. Before you can decrypt this volume, you must remove suchkeys.ACTIONS REQUIRED:1. To prevent data loss, check that a recovery password or a recovery key exists for associated data volumes.2. Type \"manage-bde -autounlock -ClearAllKeys Volume\" to remove stored external key(s).
0xC0000600此命令无效。没有正在进行的转换。键入 \"manage-bde -status %1!s!\" 了解详细信息。 The command is invalid. No conversion is in progress.Type \"manage-bde -status %1!s!\" for more information.
0xC0000608已暂停擦除卷的可用空间。 Free space wiping of the volume is already paused.
0xC0000700此命令无效。没有暂停的转换。键入 \"manage-bde -status %1!s!\" 了解详细信息。 The command is invalid. No conversion is paused.Type \"manage-bde -status %1!s!\" for more information.
0xC0000701卷加密已在进行中。 Encryption of the volume is already in progress.
0xC0000702卷解密已在进行中。 Decryption of the volume is already in progress.
0xC0000705正在擦除卷的可用空间。 Free space wiping of the volume is already in progress.
0xC0000801错误: 卷已锁定。 ERROR: The volume is already locked.
0xC0000802错误: 卷无法锁定,因为它包含正在运行的 OS。 ERROR: The volume cannot be locked because it contains the running OS.
0xC0000803错误: 尝试锁定卷时拒绝访问。应用程序可能正在访问此卷(代码 0x80070005)。即使卷在使用中,添加 \"-ForceDismount\" 参数也可以锁定卷。键入 \"manage-bde -lock -?\" 查看详细信息。 ERROR: Access was denied when attempting to lock the volume. Applicationsmay be accessing this volume (code 0x80070005).Add the \"-ForceDismount\" parameter to lock the volume even when it is in use.Type \"manage-bde -lock -?\" for more information.
0xC0000900错误: 卷已解锁。 ERROR: The volume is already unlocked.
0xC0000901错误: 尝试从磁盘读取密钥时发生一个错误。 ERROR: An error occurred while attempting to read the key from disk.
0xC0000902错误: 文件“%1!s!”无法解锁卷 %2!s!。 ERROR: The file \"%1!s!\" failed to unlock volume %2!s!.
0xC0000904错误: 此密码无法解锁卷 %1!s!。 ERROR: The password failed to unlock volume %1!s!.
0xC0000906错误: 此证书无法解锁卷 %1!s!。 ERROR: The certificate failed to unlock volume %1!s!.
0xC0000908错误: 必须指定一个解锁机制(密码、SID、证书、恢复密码或恢复密钥)。 ERROR: An unlock mechanism (password, SID, certificate, recovery password, orrecovery key) must be specified.
0xC000090B错误: 不允许远程执行此操作,你必须在本地登录到计算机才能执行此命令。 ERROR: This operation is not allowed remotely, you must log on to the computerlocally to perform this command.
0xC000090C错误: 可能仅指定了一个解锁机制(密码、SID、证书、恢复密码或恢复密钥)。 ERROR: Only one unlock mechanism (password, SID, certificate, recovery password,or recovery key) may be specified.
0xC000090F错误: 基于 SID 的标识保护器无法解锁卷 %1!s!。 ERROR: A SID-based Identity protector failed to unlock volume %1!s!.
0xC0000A01错误: 无法在 OS 卷上使用自动解锁。 ERROR: Automatic unlocking cannot be used on the OS volume.
0xC0000A02错误: 已在卷上启用了自动解锁。 ERROR: Automatic unlock is already enabled on the volume.
0xC0000A04错误: 已在卷上禁用了自动解锁。 ERROR: Automatic unlock is already disabled on the volume.
0xC0000A06错误: 仅在 OS 卷中发现了用于自动解锁数据卷的密钥。必须指定 OS 卷的卷号。 ERROR: Keys used to automatically unlock data volumes are only found in theOS volume. The volume letter for the OS volume must be specified.
0xC0000B06错误: 保护器类型“%1!s!”无效。有效的保护器类型: RecoveryPassword、ExternalKey、Certificate、TPM、TPMAndStartupKey、TPMAndPIN、TPMAndPINAndStartupKey、Password、Identity。 ERROR: Invalid protector type '%1!s!'.Valid protector types: RecoveryPassword, ExternalKey, Certificate, TPM,TPMAndStartupKey, TPMAndPIN, TPMAndPINAndStartupKey, Password, Identity.
0xC0000B0C错误: 检索卷的密钥保护器时发生了一个错误。 ERROR: An error occurred while retrieving the volume's key protectors.
0xC0000B0D错误: 未识别给定的保护器 ID。 ERROR: The given protector ID was not recognized.
0xC0000B0E错误: 密钥无法保存到相对路径中。请使用绝对路径,如 \"D:\\\\\"。 ERROR: Keys cannot be saved to relative paths. Use an absolute pathsuch as \"D:\\\\\".
0xC0000B0F错误: 尝试将密钥保存到磁盘时发生了一个错误。 ERROR: There was an error while trying to save the key to disk.
0xC0000C01错误: 删除密钥保护器时发生了一个错误。 ERROR: An error occurred while deleting the key protector.
0xC0000C02注意: 已在卷 %1!s! 上禁用密钥保护器以允许继续访问 BitLocker 加密的数据。键入 \"manage-bde -protectors -enable %1!s!\" 以重新启用添加的任何新密钥保护器。 NOTE: Key protectors have been disabled on volume %1!s! to allow continuedaccess to BitLocker-encrypted data.Type \"manage-bde -protectors -enable %1!s!\" to re-enable any new keyprotectors that are added.
0xC0000C03错误: 必须使用“证书”管理单元删除数据恢复代理证书。 ERROR: Removal of the data recovery agent certificate must be done using theCertificates snap-in.
0xC0000C04错误: 只能在 BitLocker 驱动器加密组策略设置“允许启动时网络解锁”中禁用网络解锁,或通过删除域控制器上的公钥策略组策略设置“BitLocker 驱动器加密网络解锁证书”禁用网络解锁。 ERROR: Network Unlock can only be disabled within the BitLocker Drive Encryptiongroup policy setting \"Allow network unlock at startup\", or by removing thePublic Key Policies group policy setting \"BitLocker Drive Encryption NetworkUnlock Certificate\" on the domain controller.
0xC0000D01错误: 无法同时使用 -type 和 -id。 ERROR: Cannot use both -type and -id.
0xC0000D02错误: 必须使用 -tsk 指定启动密钥。 ERROR: You must specify the Startup Key with -tsk.
0xC0000D03错误: 此计算机没有 TPM,或者没有能够与 BitLocker 一起使用的 TPM。 ERROR: This computer either does not have a TPM, or one which is capable ofbeing used with BitLocker.
0xC0000D04错误: 只有 OS 卷可以使用 TPM 加密。 ERROR: Only the OS volume may be secured with the TPM.
0xC0000D05错误: 不能使用任何其他基于 TPM 的保护器指定 -tpm。 ERROR: You cannot specify -tpm with any other TPM-based protectors.
0xC0000D06错误: 若要使用 -Certificate 命令,还必须使用 -cf 参数指定到证书文件的路径,或者使用 -ct 参数指定证书指纹。 ERROR: To use the -Certificate command you must also specify either the pathto the certificate file using the -cf parameter or the certificate thumbprintusing the -ct parameter.
0xC0000D07错误: 提供的恢复密码未根据数字密码的要求进行正确的格式化。密码必须正好包含 48 位数字,这些数字可以划分为 8组,每组 6 位数字。使用连字符(-)在命令行上将每6 位数字分为一组。48 位数字密码中的每组 6 位数字必须:1. 能被 11 整除2. 小于 720896例如,\"000000\" 是有效的 6 位数字组。无效组包括 \"123456\"、\"720896\" 和 \"888888\"。使用不带参数的 \"-rp\" 可以生成随机密码。 ERROR: The recovery password provided is not formatted correctly according torequirements for a numerical password.The password must contain exactly 48 digits, which can be divided into 8groups of 6 digits each. Use a hyphen (-) to separate groups of 6 digits onthe command line.Each group of 6 digits in the 48-digit numerical password must be:1. Divisible by 112. Less than 720896For example, \"000000\" is a valid group of 6 digits.Invalid groups include \"123456\", \"720896\", and \"888888\".Use \"-rp\" with no arguments to generate a random password.
0xC0000D09错误: BitLocker 在计算机上检测到可启动的 CD 或 DVD。可启动的CD 或 DVD 会影响 TPM 是否可以解锁 OS 卷。所需操作:1. 将所有可启动的 CD 或 DVD 从计算机中移除2. 运行 \"manage-bde -off %1!s!\" 还原对磁盘所做的所有更改3. 重新启动计算机。 (键入 \"shutdown /?\" 可查看命令行说明。)4. 再次运行此命令。 ERROR: BitLocker detected a bootable CD or DVD on the computer. A bootableCD or DVD affects whether the TPM can unlock the OS volume.ACTIONS REQUIRED:1. Remove any bootable CD or DVD from the computer2. Revert any changes made to the disk by running \"manage-bde -off %1!s!\"3. Restart the computer. (Type \"shutdown /?\" for command line instructions.)4. Run this command again.
0xC0000D0A错误: 找不到有效的证书。 ERROR: No valid certificates were found.
0xC0000D0B错误: 找到两个或多个有效的证书。请通过以下方式重新运行此命令,以指定唯一的证书: 使用 -cf 参数的指向证书文件的路径,或使用 -cf 参数的证书指纹。 ERROR: Two or more valid certificates were found. Re-run this commandspecifying a unique certificate by either the path to the certificate fileusing the -cf parameter or the certificate thumbprint using the -ct parameter.
0xC0000D10错误: 无效的语法。“%1!s!”未被识别为有效的 SID 或帐户名。 ERROR: Invalid Syntax.\"%1!s!\" was not recognized as a valid SID or account name.
0xC0000D11错误: BitLocker 驱动器加密无法执行此命令。目标计算机可能运行的是较低版本的 Windows,该版本不支持此命令。 ERROR: BitLocker Drive Encryption could not perform this command.The target computer might be running an earlier version of Windows that doesnot support this command.
0xC0001000错误: 不存在卷 %1!s! 的恢复方法。键入 \"manage-bde -protectors -add -?\" 获取有关添加恢复密码或恢复密钥的详细信息。 ERROR: No recovery methods exist for volume %1!s!.Type \"manage-bde -protectors -add -?\" for more information about adding arecovery password or recovery key.
0xC0001001错误: 必须启用 BitLocker 保护以强制恢复卷 %1!s!。键入 \"manage-bde -on -?\" 获取详细信息。 ERROR: BitLocker protection must be turned on to force a recovery forvolume %1!s!.Type \"manage-bde -on -?\" for more information.
0xC0001002错误: 此卷没有要删除的密钥保护器。 ERROR: This volume has no key protectors to delete.
0xC0001003强制恢复卷 %1!s! 时不需要更改。 No changes needed to force recovery for volume %1!s!.
0xC0001100错误: 卷 %1!s! 上没有密码密钥保护器。键入 \"manage-bde -protectors -add -?\" 获取有关添加密码密钥保护器的详细信息。 ERROR: There are no password key protectors on volume %1!s!.Type \"manage-bde -protectors -add -?\" for more information about adding apassword key protector.
0xC0001101错误: 卷 %1!s! 上有多个密码密钥保护器。每个卷只支持一个密码密钥保护器。键入\"manage-bde -protectors -delete -?\" 获取有关删除密钥保护器的信息。 ERROR: There is more than one password key protector on volume %1!s!.Only one password key protector per volume is supported. Type\"manage-bde -protectors -delete -?\" for information about deleting keyprotectors.
0xC0001300错误: 卷 %1!s! 上没有 PIN 密钥保护器。键入 \"manage-bde -protectors -add -?\" 获取有关添加 PIN密钥保护器的详细信息。 ERROR: There are no PIN key protectors on volume %1!s!.Type \"manage-bde -protectors -add -?\" for more information about adding a PINkey protector.
0xC0001301错误: 卷 %1!s! 上有多个 PIN 密钥保护器。每个卷只支持一个 PIN 密钥保护器。键入\"manage-bde -protectors -delete -?\" 获取有关删除密钥保护器的信息。 ERROR: There is more than one PIN key protector on volume %1!s!.Only one PIN key protector per volume is supported. Type\"manage-bde -protectors -delete -?\" for information about deleting keyprotectors.
0xC0001303错误: 未使用 -Certificate 参数指定证书指纹或证书文件。 ERROR: Certificate thumbprint or certificate file specified withoutthe -Certificate parameter.
0xC0001400错误: 卷 %1!s! 上没有基于 TPM 的启动密钥保护器。键入 \"manage-bde -protectors -add -?\" 获取有关添加启动密钥保护器的详细信息。 ERROR: There are no TPM based startup key protectors on volume %1!s!.Type \"manage-bde -protectors -add -?\" for more information about adding astartup key protector.
0xC0001401错误: 卷 %1!s! 上有多个启动密钥保护器。每个卷只支持一个启动密钥保护器。键入\"manage-bde -protectors -delete -?\" 获取有关删除密钥保护器的信息。 ERROR: There is more than one startup key protector on volume %1!s!.Only one startup key protector per volume is supported. Type\"manage-bde -protectors -delete -?\" for information about deleting keyprotectors.
0xC0001600错误: 需要指定参数 \"-ID\" 才能备份恢复信息。 ERROR: Specifying the parameter '-ID' is required to back up recoveryinformation.
0xC0001602错误: 组策略不允许将恢复信息存储到 Active Directory。未尝试该操作。 ERROR: Group policy does not permit the storage of recovery informationto Active Directory. The operation was not attempted.
0xC0001801错误: 只能在完全加密卷上擦除可用空间。 ERROR: Wipe of free space is only available on fully encrypted volumes.
0xC0001802错误: 不能在硬件加密卷上擦除可用空间。 ERROR: Wipe of free space is not available on hardware encrypted volumes.
0xC0001804错误: 当前未执行擦除可用空间。 ERROR: Wipe of free space is not currently taking place.

EXIF

File Name:manage-bde.exe.mui
Directory:%WINDIR%\WinSxS\amd64_microsoft-windows-s..-tool-exe.resources_31bf3856ad364e35_10.0.15063.0_zh-cn_2dcbf5ce713ee005\
File Size:96 kB
File Permissions:rw-rw-rw-
File Type:Win32 DLL
File Type Extension:dll
MIME Type:application/octet-stream
Machine Type:Intel 386 or later, and compatibles
Time Stamp:0000:00:00 00:00:00
PE Type:PE32
Linker Version:14.10
Code Size:0
Initialized Data Size:97792
Uninitialized Data Size:0
Entry Point:0x0000
OS Version:10.0
Image Version:10.0
Subsystem Version:6.0
Subsystem:Windows GUI
File Version Number:10.0.15063.0
Product Version Number:10.0.15063.0
File Flags Mask:0x003f
File Flags:(none)
File OS:Windows NT 32-bit
Object File Type:Executable application
File Subtype:0
Language Code:Chinese (Simplified)
Character Set:Unicode
Company Name:Microsoft Corporation
File Description:BitLocker 驱动器加密: 配置工具
File Version:10.0.15063.0 (WinBuild.160101.0800)
Internal Name:manage-bde.exe
Legal Copyright:© Microsoft Corporation. All rights reserved.
Original File Name:manage-bde.exe.mui
Product Name:Microsoft® Windows® Operating System
Product Version:10.0.15063.0

What is manage-bde.exe.mui?

manage-bde.exe.mui is Multilingual User Interface resource file that contain Chinese (Simplified) language for file manage-bde.exe (BitLocker 驱动器加密: 配置工具).

File version info

File Description:BitLocker 驱动器加密: 配置工具
File Version:10.0.15063.0 (WinBuild.160101.0800)
Company Name:Microsoft Corporation
Internal Name:manage-bde.exe
Legal Copyright:© Microsoft Corporation. All rights reserved.
Original Filename:manage-bde.exe.mui
Product Name:Microsoft® Windows® Operating System
Product Version:10.0.15063.0
Translation:0x804, 1200