Documentation for SCCM task sequence deployment orchestrator

MBAM Server details

Specify your MBAM server address URL. If recovery keys are stored in the MBAM recovery and hardware database, sccmtspsi will use this MBAM server address to automatically unlock locked drives.

MBAM server address should begin with https://.

Note : The realm broker account should have permission to read the recovery password from Microsoft Bitlocker Administration and Monitoring service. Add the realm broker account either to the “Advanced helpdesk users” active directory group or the “MBAM administrators” active directory group.

Suggest Edit