Hello Benja,
Thank you for posting your question on Microsoft Windows Forum!
Thank you for providing the details.
Since you've already confirmed that:
- The issue only occurs after installing KB5123099.
- BitLocker To Go drives appear as RAW in Disk Management.
- The BitLocker password prompt never appears.
- Uninstalling KB5123099 immediately restores functionality.
- The same USB drives work correctly on other systems.
This strongly suggests the issue is related to a change introduced by KB5123099, rather than a problem with the BitLocker-encrypted drives themselves.
Recommended Troubleshooting
Step 1: Verify whether Microsoft has acknowledged the issue
First, review the known issues for the update and Windows Server 2016 release information to determine whether Microsoft has documented a BitLocker To Go regression related to KB5123099.
Step 2: Check BitLocker status from command line
While the drive is connected and showing as RAW, run:
**manage-bde -status**
**manage-bde -unlock K: -RecoveryPassword <RecoveryKey>**
(replace K: with the appropriate drive letter)
This will help determine whether the issue is limited to the graphical unlock mechanism or whether BitLocker itself cannot access the volume.
Step 3: Review BitLocker-related event logs
Check the following logs for warnings or errors generated when the drive is connected:
Event Viewer
- Applications and Services Logs
- Microsoft
- Windows
- BitLocker-Driver
and
Event Viewer
- Windows Logs
- System
Look for events generated immediately after inserting the USB drive.
Step 4: Confirm whether the issue affects all BitLocker To Go devices
If possible, test:
- Another BitLocker-encrypted USB drive
- Another USB port
- Another Windows Server 2016 system with KB5123099 installed
This can help determine whether the issue is specific to certain devices or reproducible across all BitLocker To Go media.
Current Assessment
Based on your findings, you've already identified a clear correlation between KB5123099 and the loss of BitLocker To Go functionality.
If manage-bde also fails to access the drive while KB5123099 is installed, this would further support the conclusion that the update introduced a compatibility or regression issue affecting BitLocker To Go on Windows Server 2016.
Additional Information
If issue persist, could you please share:
- The output of: manage-bde -status
while KB5123099 is installed.
- Any BitLocker-Driver events generated when connecting the USB drive.
- Whether the issue affects all BitLocker-encrypted removable drives or only specific devices.
For additional reference, please review Microsoft's BitLocker documentation:
I hope this answer has brought you useful information. If so, please click on Accept Answer and consider upvoting. Doing so helps other community members identify useful solutions to similar issues.