하드웨어 암호화 모듈 펌웨어 업데이트 후 CSV 마운트 지점 사라짐

Hyun-woo Kang 40 평판 포인트
2026-09-12T03:15:50.5066667+00:00

Hyper-V 호스트의 TPM/HSM 장치 펌웨어를 업데이트한 후 하드웨어 기반 볼륨 암호화 키를 사용할 수 없게 되어 C:\ClusterStorage\ 아래의 CSV 경로가 마운트 해제되었습니다. 백업된 복구 키를 사용하여 CSV 볼륨을 복구하려면 어떻게 해야 하나요?

비즈니스용 Windows | Windows 365 비즈니스
댓글 0개 설명 없음

답변 1개

정렬 기준: 가장 유용함
  1. Xuan Nhu 1,370 평판 포인트 독립 자문가
    2026-09-12T03:55:19.2133333+00:00

    Hello Hyun-woo,

    If the CSV became unavailable because the encryption protector can no longer be used after the TPM/HSM firmware update, do not format, initialize, or recreate the CSV. If you still have a valid BitLocker recovery password or .BEK recovery key, the volume can normally be unlocked using that recovery material. Microsoft recommends PowerShell or manage-bde for BitLocker-protected CSVs.

    First identify the affected volume and check its BitLocker state:

    manage-bde -status "C:\ClusterStorage\Volume1"

    If you have the 48-digit recovery password, unlock it with:

    manage-bde -unlock <volume> -RecoveryPassword <48-digit-recovery-password>

    If you have a .BEK recovery key instead:

    manage-bde -unlock <volume> -RecoveryKey <path-to-key.bek>

    Both recovery methods are supported by manage-bde.

    For a CSV, also verify the cluster’s BitLocker protector configuration before returning the resource to normal operation. Windows Failover Clustering normally manages unlocking through its configured cluster protector, and Microsoft documents specific recovery-key handling for CSV resources.

    I would avoid removing the existing protectors or decrypting the volume until access to the data has been restored and verified. If the recovery key successfully unlocks the underlying volume but the CSV still cannot be brought online, please provide the output of manage-bde -status, Get-BitLockerVolume, and the relevant FailoverClustering/BitLocker events.

    이 대답이 도움이 되었나요?

    댓글 0개 설명 없음

답변

질문 작성자는 답변을 '승인됨'으로 표시하고, 중재자는 답변을 '추천됨'으로 표시할 수 있습니다. 이를 통해 사용자는 해당 답변이 작성자의 문제를 해결했다는 것을 알 수 있습니다.