I am Dale Hayter, a Microsoft and VMware certified Technical Consultant.

My blog has been built up over the years from my experience of working on an IT helpdesk and also from being out on-site.

Check if AD Schema Includes Bitlocker

If running Bitlocker within your organisation, the best practice is for the recovery keys to be stored in Active Directory. To store them in AD, the AD schema has to have the bitlocker entries in it. To check if it does, run the command below from an elevated Active Directory PowerShell session.

If it comes back with no entries then its a no, and it will need to be extended. If it comes back with some values like below, then you are all good.