The Notebook Review forums were hosted by TechTarget, who shut down them down on January 31, 2022. This static read-only archive was pulled by NBR forum users between January 20 and January 31, 2022, in an effort to make sure that the valuable technical information that had been posted on the forums is preserved. For current discussions, many NBR forum users moved over to NotebookTalk.net after the shutdown.
Problems? See this thread at archive.org.

    Bitlocker on new SSD

    Discussion in 'Hardware Components and Aftermarket Upgrades' started by jack574, Jan 13, 2020.

  1. jack574

    jack574 Notebook Evangelist

    Reputations:
    20
    Messages:
    355
    Likes Received:
    70
    Trophy Points:
    41
    Hi

    I know when I enable bitlocker on a brand new SSD, I can choose to only encrypt the used portion of the drive. As the drive is basically empty, that will be almost instantaneous.

    Other option is to encrypt the entire drive, which I believe will take a lot longer even though the drive is empty, as it will be encrypting the empty blocks (if that's the right word).

    My question is... will encrypting the entire empty drive mean that adding data to it in the future will be faster, as the entire drive has already been encrypted?

    Or does the new data need to be encrypted as it's added (regardless of whether the empty blocks it's using have already been encrypted) so will take the same amount of time anyway?

    I.e. is there any benefit in encrypting an entire brand new drive (I appreciate the benefit if it's previously had data on it that's been deleted, but that's not relevant with a brand new drive)?

    Thanks
     
  2. StormJumper

    StormJumper Notebook Virtuoso

    Reputations:
    579
    Messages:
    3,537
    Likes Received:
    488
    Trophy Points:
    151
    Encryption should be left for NSA or Sensitive Client files only(Data Privacy). If your not doing these types of work it's not worth doing and worse you will forget the passcode or not write it down correctly and get locked out instead. For everyday users No, it's not worth the hassle. Just use a password on the main computer and that will more then stop users from using it without your permission and if someone is using because you didn't secure it or stop them from using it then there is nothing more anyone here can do to help.
     
    tilleroftheearth likes this.
  3. senso

    senso Notebook Deity

    Reputations:
    560
    Messages:
    1,645
    Likes Received:
    788
    Trophy Points:
    131
    Without BitLocker, or any other disk encryption, if you have physical access its as easy as live booting with linux...
    Lots of drives already do encryption on the fly on the drive hardware, so it doesn't make them any slower..
     
  4. Starlight5

    Starlight5 Yes, I'm a cat. What else is there to say, really?

    Reputations:
    826
    Messages:
    3,230
    Likes Received:
    1,643
    Trophy Points:
    231
    No.
    Yes. It will be encrypted instantly though, the encryption overhead is pretty much non-existant.
    No.
     
    jack574 likes this.
  5. jack574

    jack574 Notebook Evangelist

    Reputations:
    20
    Messages:
    355
    Likes Received:
    70
    Trophy Points:
    41
    Thanks for answering my questions. I ended up encrypting the whole drive anyway. Only took about an hour or so - not too bad for a 2TB external SSD. My 4TB external HDD took about 3 days!
     
    tilleroftheearth and Starlight5 like this.
  6. StormJumper

    StormJumper Notebook Virtuoso

    Reputations:
    579
    Messages:
    3,537
    Likes Received:
    488
    Trophy Points:
    151
    Remember This - you will need to enter this if you reformat or when moved to different system will require the original O/S to remove encryption before access. And if your Computer dies or drive crashes this is when encryption does nothing good for recovery on a different computer.
     
  7. TunaDog

    TunaDog Notebook Enthusiast

    Reputations:
    0
    Messages:
    31
    Likes Received:
    2
    Trophy Points:
    16
    If the drive is truly new then there isn't a need to encrypt the full thing, but it's also fast enough to usually not matter as you've already discovered.

    Note, however, that if the drive is not new then you probably want to encrypt the whole thing. For example, if you have been using the drive, just reformatted it and reinstalled the OS, then you ought to encrypt the whole thing: what the OS considers unused space will still be contain data from before you reformatted that can be read back by any low-level tools.

    Yes you need to keep track of the key. Increased security almost always carries some increase in hassle. Whether that's worth it to you depends on your data and your own ability to not lose a key.
     
    Starlight5 likes this.