Administrator Guide

Constant/Value Description
permitted. Please have your system administrator resolve
these policy conflicts before attempting to enable BitLocker.
FVE_E_NON_BITLOCKER_KU
0x80310093
The Key Usage (KU) attribute of the specified certificate
does not permit it to be used for BitLocker Drive Encryption.
BitLocker does not require that a certificate have a KU
attribute, but if one is configured it must be set to either
Key Encipherment or Key Agreement.
FVE_E_PRIVATEKEY_AUTH_FAILED
0x80310094
The private key associated with the specified certificate
cannot be authorized. The private key authorization was
either not provided or the provided authorization was
invalid.
FVE_E_REMOVAL_OF_DRA_FAILED
0x80310095
Removal of the data recovery agent certificate must be
done using the Certificates snap-in.
FVE_E_OPERATION_NOT_SUPPORTED_ON_VISTA_VOL
UME
0x80310096
This drive was encrypted using the version of BitLocker
Drive Encryption included with Windows Vista and Windows
Server 2008 which does not support organizational
identifiers. To specify organizational identifiers for this drive
upgrade the drive encryption to the latest version using the
"manage-bde -upgrade" command.
FVE_E_CANT_LOCK_AUTOUNLOCK_ENABLED_VOLUME
0x80310097
The drive cannot be locked because it is automatically
unlocked on this computer. Remove the automatic unlock
protector to lock this drive.
FVE_E_FIPS_HASH_KDF_NOT_ALLOWED
0x80310098
The default BitLocker Key Derivation Function SP800-56A
for ECC smart cards is not supported by your smart card.
The Group Policy setting requiring FIPS-compliance
prevents BitLocker from using any other key derivation
function for encryption. You have to use a FIPS compliant
smart card in FIPS restricted environments.
FVE_E_ENH_PIN_INVALID
0x80310099
The BitLocker encryption key could not be obtained from
the TPM and enhanced PIN. Try using a PIN containing only
numerals.
FVE_E_INVALID_PIN_CHARS
0x8031009A
The requested TPM PIN contains invalid characters.
FVE_E_INVALID_DATUM_TYPE
0x8031009B
The management information stored on the drive contained
an unknown type. If you are using an old version of
Windows, try accessing the drive from the latest version.
FVE_E_EFI_ONLY
0x8031009C
The feature is only supported on EFI systems.
FVE_E_MULTIPLE_NKP_CERTS
0x8031009D
More than one Network Key Protector certificate has been
found on the system.
FVE_E_REMOVAL_OF_NKP_FAILED
0x8031009E
Removal of the Network Key Protector certificate must be
done using the Certificates snap-in.
FVE_E_INVALID_NKP_CERT
0x8031009F
An invalid certificate has been found in the Network Key
Protector certificate store.
Troubleshooting 137