I ran many tests, trying several different things, but in the end, it never came out as I expected, with Full Disk.
Even post OSD, if I decrypted, ensured policy was set for Full Disk, it would only encrypt Used Space.
And add a step in the task sequence to run the Powershell script as shown below.
My name is Jörgen Nilsson and I work as a Senior Consultant at Onevinn in Malmö, Sweden.
In my last post I wrote about how to make Internet Explorer the default web browser in Windows 10, now I will cover how to deploy a customized Start Menu during deployment and add a menu item for Internet Explorer the last took a while to figure out how to add the shortcut to Internet Explorer.
There are many more ways to customize the Start Menu, deploy it as a mandatory Start Menu using Group Policies in that case the user cannot modify it.
With Hyper-V, you can now enable virtual TPM on Gen2 VMs, and have all the yummy goodness of UEFI, Secureboot, Bitlocker, Credential Guard all on your VM! But when I checked the Bitlocker Status (manage-bde –status), it showed I was only encrypting Used Space.