My bit locker enabled USB ssd drive is write protected from GPO policies in Microsoft Intune and will not enable me to save data to it

Rex Wilburn 0 Reputation points
2025-03-10T13:54:15.6333333+00:00

My bit locker enabled USB ssd drive is write protected from GPO policies in Microsoft Intune and will not enable me to save data to it. If I look at the attributes of the drive itself within Diskpart, it does not show that it write protected but when I try and save data to it, I can't because it is "write Protected" according to the error 1105. My IT dept. thinks that the FIPS policy is breaking the GPO that allows the USB device to be written to.

Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
473 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Xenia-MSFT 5,005 Reputation points Microsoft External Staff
    2025-03-11T02:26:34.9466667+00:00

    @Rex Wilburn Thanks for posting in our Q&A.

    Honestly, I'm not familiar with this issue. There is no helpful information I can share with you. Let's wait if someone else can provide something.

    Or it is suggested to create an online support ticket to get more help. Here is the support link:

    https://learn.microsoft.com/en-us/mem/get-support

    Thanks for your understanding.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

  2. Reny T 0 Reputation points
    2025-03-11T04:33:22.1233333+00:00

    Hi,

    Not clear if you are using GPO, from Group Policy or is this a Intune Config.

    Try clearing the write-protection attribute using Diskpart:

    1. Open Command Prompt as Administrator.
    2. Type diskpart and press Enter.
    3. Type list disk to display all connected drives.
    4. Identify your USB drive and type select disk X (replace X with the disk number).
    5. Type attributes disk clear readonly and press Enter.
    6. Exit Diskpart and check if the drive is writable.

    Is your IT team able to adjust the FIPS policy or Bitlocker settings in Group Policy so settings comply?

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.