Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feature Request: Add "disable device encryption" to pre-installation of Windows 11 ISO, especially 24H2 #2650

Closed
Meyers07 opened this issue Jan 2, 2025 · 1 comment

Comments

@Meyers07
Copy link

Meyers07 commented Jan 2, 2025

So after seeing issue 2244:
#2244

I managed to create a Windows 11 24H2 ISO with requirement for 4gb, secure boot, and uefi removed, requirement for online microsoft account removed, and bitlocker device encryption (which was said to be made automatically turned on for all editions since 24H2 fresh installation) disabled.

However a separate "device encryption" is still partially turned on, as seen in the pictures below (i haven't take picture of the device given i take it for physical repairs for hardware issues unrelated, specifically a completely malfunctioning wi-fi card, but its taken from a reddit post with same issues)

i can simply turn off device encryption but that means decrypting, which would be longer to process on a filled system (my system currently is empty apart from Windows 11 24H2 installation and i plan to clean reinstall it after the previously-mentioned hardware issues are fixed).
here's the question: can rufus be configured to turn off the other device encryption setting before it's even turned on silently during OOBE?

1DHaZn9

7m2okTs

@pbatard
Copy link
Owner

pbatard commented Jan 2, 2025

It may sound terse as a reply, but as long as your disk did not get encrypted by default after installing Windows, then the feature provided by Rufus works exactly as designed, and I am not going to spend any time chasing after UI options that are often known not to properly reflect the current system configuration (another example of this is with password expiration, which is properly disabled by Rufus, but that some UI elements still declare as enabled.

That's because there are usually multiple ways, in Windows, to disable something, but the UI usually looks at only one of these options to declare whether it's enable or not, which of course may not reflect the actual situation.

So, again, unless you have seen your main drive getting encrypted by default, I see nothing to do here.

@pbatard pbatard closed this as completed Jan 2, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants