Restoring Windows UEFI BitLocker Challenge/Response systems

For restoring Windows UEFI BitLocker systems, Sophos offers the restore tool BLCRBackupRestoren.exe. With this tool, you can:

  • Back up BitLocker Challenge/Response-related data:

    This is only necessary if the automatic backup failed (log event 3071: "Key backup could not be saved to the specified network share.")

  • Manually restore a previously created backup and repair the NVRAM boot order:

    This is only necessary if you suspect that BitLocker Challenge/Response-related data was corrupted or deleted.

    BLCRBackupRestoren.exe needs to be started from a Windows PE environment. It is included on the Sophos Virtual Client CD.