Important: To prevent data loss, you must have a way to recover BitLocker encryption keys. If you do not allow both recovery options below, you must enable backup of BitLocker recovery information to AD DS. Otherwise, a policy error occurs.
Configure 48-digit recovery password:
Do not allow recovery password
Configure 256-bit recovery key:
Do not allow recovery key
Note: If you do not allow the recovery password and require the recovery key, users cannot enable BitLocker without saving to USB.