Use this task to create a bootable WinPE recovery CD/DVD from the Windows (64-bit) operating system. To do this, you must configure WinPE to include the plug-in for Drive EncryptionTrellix Drive Encryption - SaaS
The following information is intended for System Administrators when modifying the registry details:
Registry modifications are irreversible and if done incorrectly can cause system failure.
We recommend that you back up your registry and understand the restore process before you proceed with the registry modification. For more information, see http://support.microsoft.com/kb/256986.
Do not run a .REG file, which is not considered to be a genuine registry import file.
Do not combine the 32-bit and 64-bit architectures.
You must rename the EETech64.exe file (found in the Win64 folder within the build) to EETech.exe.
WinPE 64-bit is limited to file and password authentication; token support is not available.
Download the Windows Assessment and Deployment Kit (ADK) for Windows from the Microsoft website.
Install the ADK on the Windows operating system by downloading and double-clicking the ADKsetup.exe file.
Select Search and type Deployment to display the Deployment and Imaging Tools Environment icon, then run the tool as Administrator to display the command prompt.
Go to
<Windows ADK install path>\Deployment Tools, then run thecopype.cmdcommand using this syntax:copype.cmd <architecture> <destination>Where
<architecture> can be x86 or amd64
<destination> is a path to the local directory
For example, copype.cmd amd64 c:\winpe_amd64
This command creates the required directory structure and copies all the necessary files for that architecture.
To mount the Windows PE image (Winpe.wim) base to the Mount directory to access the WinPE image, open the command prompt, then enter this command:
Dism.exe /Mount-Wim /WimFile:C:\winpe_amd64\media\sources\boot.wim /index:1 /MountDir:C:\winpe_amd64\mountEdit the WinPE environment as follows:
Open regedit, then load the system hive under [HKEY_LOCAL_MACHINE].
Click HKEY_LOCAL_MACHINE, File menu, then click Load Hive.
From the mounted WinPE image, navigate to this system file
C:\winpe_amd64\mount\Windows\System32\Config\SYSTEM.Name the WinPE hive, for example, pe.
Access the [HKEY_LOCAL_MACHINE\pe\ControlSet001\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}] registry entry.
Edit the multi-string upper filters with values in the specified order:
MfeEpePC
PartMgr
Right- click the services folder under HKEY_LOCAL_MACHINE\pe\ControlSet001\services, then create the MfeEpePC and MfeCcde keys.
Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeEpePC] key as follows:
"Type"=dword:00000001
"Start"=dword:00000000
"ErrorControl"=dword:00000003
Note
The keys are still 32-bit dword even though you are using a 64-bit system.
Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeCcde] key as follows:
"Type"=dword:00000001
"Start"=dword:00000000
"ErrorControl"=dword:00000003
"Group"=string:Primary Disk
Note
The keys are still 32-bit dword even though you are using a 64-bit system.
Click pe, then click File menu and Unload hive to unload the WinPE hive.
Close the Registry Editor.
Create the necessary folders in the mounted WinPE image, then copy the Drive Encryptionfiles to the appropriate folders. For details, see the section on Folders and files for WinPE 64-bit CD/DVDs detailed below.
Commit the changes by performing these steps:
To commit changes to WIM, enter this command:
Dism.exe /Unmount-Wim /MountDir:C:\winpe_amd64\mount\ /CommitTo create a bootable ISO image, enter this command for the appropriate WinPE version:
WinPE Version
Command
Version 3
oscdimg -n -bc:\winpe_amd64\etfsboot.com C:\winpe_amd64\ISO C: \winpe_amd64\winpe_amd64.isoVersion 4
oscdimg.exe -m -o -u2 -udfver102 -bootdata:2#p0,e,b"C:\Winpe_amd64\fwfiles\etfsboot.com"#pEF,e,b"C:\Winpe_amd64\fwfiles\efisys.bin" "C:\Winpe_amd64\media" "C:\Winpe_amd64\winpe_amd64.iso"Version 5
oscdimg.exe -m -o -u2 -udfver102 -bootdata:2#p0,e,b"C:\Winpe_amd64\fwfiles\etfsboot.com"#pEF,e,b"C:\Winpe_amd64\fwfiles\efisys.bin" "C:\Winpe_amd64\media""C:\Winpe_amd64\winpe_amd64.iso"Version 6
MakeWinPEMedia /iso c:\winpe_amd64 winpe_amd64.iso
The ISO image for WinPE 64-bit for DETech can be found at
C:\winpe_amd64\winpe_amd64.isoBurn this image to a CD/DVD and boot the system from the CD/DVD.
Note
Do not boot the system from WinPE CD/DVD while decryption is in progress.
At the command prompt, enter these commands:
cd\cd Program Files\Drive EncryptionEETech.exe
The DETech screen appears.