COM Error Codes (TPM, PLA, FVE)

Header: winerror.h

The following table provides a list of error codes used by COM-based APIs.

If you are experiencing difficulty with an application you are installing or running, contact customer support for the software that is displaying the error message. To obtain support for a Microsoft product, go to https://support.microsoft.com.

SymbolicCodeDescription
TPM_E_ERROR_MASK0x80280000This is an error mask to convert TPM hardware errors to win errors.
TPM_E_AUTHFAIL0x80280001Authentication failed.
TPM_E_BADINDEX0x80280002The index to a PCR, DIR or other register is incorrect.
TPM_E_BAD_PARAMETER0x80280003One or more parameter is bad.
TPM_E_AUDITFAILURE0x80280004An operation completed successfully but the auditing of that operation failed.
TPM_E_CLEAR_DISABLED0x80280005The clear disable flag is set and all clear operations now require physical access.
TPM_E_DEACTIVATED0x80280006Activate the Trusted Platform Module (TPM).
TPM_E_DISABLED0x80280007Enable the Trusted Platform Module (TPM).
TPM_E_DISABLED_CMD0x80280008The target command has been disabled.
TPM_E_FAIL0x80280009The operation failed.
TPM_E_BAD_ORDINAL0x8028000AThe ordinal was unknown or inconsistent.
TPM_E_INSTALL_DISABLED0x8028000BThe ability to install an owner is disabled.
TPM_E_INVALID_KEYHANDLE0x8028000CThe key handle cannot be interpreted.
TPM_E_KEYNOTFOUND0x8028000DThe key handle points to an invalid key.
TPM_E_INAPPROPRIATE_ENC0x8028000EUnacceptable encryption scheme.
TPM_E_MIGRATEFAIL0x8028000FMigration authorization failed.
TPM_E_INVALID_PCR_INFO0x80280010PCR information could not be interpreted.
TPM_E_NOSPACE0x80280011No room to load key.
TPM_E_NOSRK0x80280012There is no Storage Root Key (SRK) set.
TPM_E_NOTSEALED_BLOB0x80280013An encrypted blob is invalid or was not created by this TPM.
TPM_E_OWNER_SET0x80280014The Trusted Platform Module (TPM) already has an owner.
TPM_E_RESOURCES0x80280015The TPM has insufficient internal resources to perform the requested action.
TPM_E_SHORTRANDOM0x80280016A random string was too short.
TPM_E_SIZE0x80280017The TPM does not have the space to perform the operation.
TPM_E_WRONGPCRVAL0x80280018The named PCR value does not match the current PCR value.
TPM_E_BAD_PARAM_SIZE0x80280019The paramSize argument to the command has the incorrect value .
TPM_E_SHA_THREAD0x8028001AThere is no existing SHA-1 thread.
TPM_E_SHA_ERROR0x8028001BThe calculation is unable to proceed because the existing SHA-1 thread has already encountered an error.
TPM_E_FAILEDSELFTEST0x8028001CThe TPM hardware device reported a failure during its internal self test. Try restarting the computer to resolve the problem. If the problem continues, you might need to replace your TPM hardware or motherboard.
TPM_E_AUTH2FAIL0x8028001DThe authorization for the second key in a 2 key function failed authorization.
TPM_E_BADTAG0x8028001EThe tag value sent to for a command is invalid.
TPM_E_IOERROR0x8028001FAn IO error occurred transmitting information to the TPM.
TPM_E_ENCRYPT_ERROR0x80280020The encryption process had a problem.
TPM_E_DECRYPT_ERROR0x80280021The decryption process did not complete.
TPM_E_INVALID_AUTHHANDLE0x80280022An invalid handle was used.
TPM_E_NO_ENDORSEMENT0x80280023The TPM does not have an Endorsement Key (EK) installed.
TPM_E_INVALID_KEYUSAGE0x80280024The usage of a key is not allowed.
TPM_E_WRONG_ENTITYTYPE0x80280025The submitted entity type is not allowed.
TPM_E_INVALID_POSTINIT0x80280026The command was received in the wrong sequence relative to TPM_Init and a subsequent TPM_Startup.
TPM_E_INAPPROPRIATE_SIG0x80280027Signed data cannot include additional DER information.
TPM_E_BAD_KEY_PROPERTY0x80280028The key properties in TPM_KEY_PARMs are not supported by this TPM.
TPM_E_BAD_MIGRATION0x80280029The migration properties of this key are incorrect.
TPM_E_BAD_SCHEME0x8028002AThe signature or encryption scheme for this key is incorrect or not permitted in this situation.
TPM_E_BAD_DATASIZE0x8028002BThe size of the data (or blob) parameter is bad or inconsistent with the referenced key.
TPM_E_BAD_MODE0x8028002CA mode parameter is bad, such as capArea or subCapArea for TPM_GetCapability, phsicalPresence parameter for TPM_PhysicalPresence, or migrationType for TPM_CreateMigrationBlob.
TPM_E_BAD_PRESENCE0x8028002DEither the physicalPresence or physicalPresenceLock bits have the wrong value.
TPM_E_BAD_VERSION0x8028002EThe TPM cannot perform this version of the capability.
TPM_E_NO_WRAP_TRANSPORT0x8028002FThe TPM does not allow for wrapped transport sessions.
TPM_E_AUDITFAIL_UNSUCCESSFUL0x80280030TPM audit construction failed and the underlying command was returning a failure code also.
TPM_E_AUDITFAIL_SUCCESSFUL0x80280031TPM audit construction failed and the underlying command was returning success.
TPM_E_NOTRESETABLE0x80280032Attempt to reset a PCR register that does not have the resettable attribute.
TPM_E_NOTLOCAL0x80280033Attempt to reset a PCR register that requires locality and locality modifier not part of command transport.
TPM_E_BAD_TYPE0x80280034Make identity blob not properly typed.
TPM_E_INVALID_RESOURCE0x80280035When saving context identified resource type does not match actual resource.
TPM_E_NOTFIPS0x80280036The TPM is attempting to execute a command only available when in FIPS mode.
TPM_E_INVALID_FAMILY0x80280037The command is attempting to use an invalid family ID.
TPM_E_NO_NV_PERMISSION0x80280038The permission to manipulate the NV storage is not available.
TPM_E_REQUIRES_SIGN0x80280039The operation requires a signed command.
TPM_E_KEY_NOTSUPPORTED0x8028003AWrong operation to load an NV key.
TPM_E_AUTH_CONFLICT0x8028003BNV_LoadKey blob requires both owner and blob authorization.
TPM_E_AREA_LOCKED0x8028003CThe NV area is locked and not writtable.
TPM_E_BAD_LOCALITY0x8028003DThe locality is incorrect for the attempted operation.
TPM_E_READ_ONLY0x8028003EThe NV area is read only and can't be written to.
TPM_E_PER_NOWRITE0x8028003FThere is no protection on the write to the NV area.
TPM_E_FAMILYCOUNT0x80280040The family count value does not match.
TPM_E_WRITE_LOCKED0x80280041The NV area has already been written to.
TPM_E_BAD_ATTRIBUTES0x80280042The NV area attributes conflict.
TPM_E_INVALID_STRUCTURE0x80280043The structure tag and version are invalid or inconsistent.
TPM_E_KEY_OWNER_CONTROL0x80280044The key is under control of the TPM Owner and can only be evicted by the TPM Owner.
TPM_E_BAD_COUNTER0x80280045The counter handle is incorrect.
TPM_E_NOT_FULLWRITE0x80280046The write is not a complete write of the area.
TPM_E_CONTEXT_GAP0x80280047The gap between saved context counts is too large.
TPM_E_MAXNVWRITES0x80280048The maximum number of NV writes without an owner has been exceeded.
TPM_E_NOOPERATOR0x80280049No operator AuthData value is set.
TPM_E_RESOURCEMISSING0x8028004AThe resource pointed to by context is not loaded.
TPM_E_DELEGATE_LOCK0x8028004BThe delegate administration is locked.
TPM_E_DELEGATE_FAMILY0x8028004CAttempt to manage a family other than the delegated family.
TPM_E_DELEGATE_ADMIN0x8028004DDelegation table management not enabled.
TPM_E_TRANSPORT_NOTEXCLUSIVE0x8028004EThere was a command executed outside of an exclusive transport session.
TPM_E_OWNER_CONTROL0x8028004FAttempt to context save an owner evict controlled key.
TPM_E_DAA_RESOURCES0x80280050The DAA command has no resources availble to execute the command.
TPM_E_DAA_INPUT_DATA00x80280051The consistency check on DAA parameter inputData0 has failed.
TPM_E_DAA_INPUT_DATA10x80280052The consistency check on DAA parameter inputData1 has failed.
TPM_E_DAA_ISSUER_SETTINGS0x80280053The consistency check on DAA_issuerSettings has failed.
TPM_E_DAA_TPM_SETTINGS0x80280054The consistency check on DAA_tpmSpecific has failed.
TPM_E_DAA_STAGE0x80280055The atomic process indicated by the submitted DAA command is not the expected process.
TPM_E_DAA_ISSUER_VALIDITY0x80280056The issuer's validity check has detected an inconsistency.
TPM_E_DAA_WRONG_W0x80280057The consistency check on w has failed.
TPM_E_BAD_HANDLE0x80280058The handle is incorrect.
TPM_E_BAD_DELEGATE0x80280059Delegation is not correct.
TPM_E_BADCONTEXT0x8028005AThe context blob is invalid.
TPM_E_TOOMANYCONTEXTS0x8028005BToo many contexts held by the TPM.
TPM_E_MA_TICKET_SIGNATURE0x8028005CMigration authority signature validation failure.
TPM_E_MA_DESTINATION0x8028005DMigration destination not authenticated.
TPM_E_MA_SOURCE0x8028005EMigration source incorrect.
TPM_E_MA_AUTHORITY0x8028005FIncorrect migration authority.
TPM_E_PERMANENTEK0x80280061Attempt to revoke the EK and the EK is not revocable.
TPM_E_BAD_SIGNATURE0x80280062Bad signature of CMK ticket.
TPM_E_NOCONTEXTSPACE0x80280063There is no room in the context list for additional contexts.
TPM_E_COMMAND_BLOCKED0x80280400The command was blocked.
TPM_E_INVALID_HANDLE0x80280401The specified handle was not found.
TPM_E_DUPLICATE_VHANDLE0x80280402The TPM returned a duplicate handle and the command needs to be resubmitted.
TPM_E_EMBEDDED_COMMAND_BLOCKED0x80280403The command within the transport was blocked.
TPM_E_EMBEDDED_COMMAND_UNSUPPORTED0x80280404The command within the transport is not supported.
TPM_E_RETRY0x80280800The TPM is too busy to respond to the command immediately, but the command could be resubmitted at a later time.
TPM_E_NEEDS_SELFTEST0x80280801SelfTestFull has not been run.
TPM_E_DOING_SELFTEST0x80280802The TPM is currently executing a full selftest.
TPM_E_DEFEND_LOCK_RUNNING0x80280803The TPM is defending against dictionary attacks and is in a time-out period.
TPM_20_E_ATTRIBUTES0x80280082TPM 2.0: Inconsistent attributes.
TPM_20_E_HASH0x80280083TPM 2.0: Hash algorithm not supported or not appropriate.
TPM_20_E_VALUE0x80280084TPM 2.0: Value is out of range or is not correct for the context.
TPM_20_E_HIERARCHY0x80280085TPM 2.0: Hierarchy is not enabled or is not correct for the use.
TPM_20_E_KEY_SIZE0x80280086TPM 2.0: Key size is not supported.
TPM_20_E_MGF0x80280087TPM 2.0: Mask generation function not supported.
TPM_20_E_MODE0x80280089TPM 2.0: Mode of operation not supported.
TPM_20_E_TYPE0x8028008ATPM 2.0: The type of the value is not appropriate for the use.
TPM_20_E_HANDLE0x8028008BTPM 2.0: The Handle is not correct for the use.
TPM_20_E_KDF0x8028008CTPM 2.0: Unsupported key derivation function or function not appropriate for use.
TPM_20_E_RANGE0x8028008DTPM 2.0: Value was out of allowed range.
TPM_20_E_AUTH_FAIL0x8028008ETPM 2.0: The authorization HMAC check failed and DA counter incremented.
TPM_20_E_NONCE0x8028008FTPM 2.0: Invalid nonce size.
TPM_20_E_SCHEME0x80280092TPM 2.0: Unsupported or incompatible scheme.
TPM_20_E_SIZE0x80280095TPM 2.0: Structure is wrong size..
TPM_20_E_SYMMETRIC0x80280096TPM 2.0: Unsupported symmetric algorithm or key size, or not appropriate for instance.
TPM_20_E_TAG0x80280097TPM 2.0: Incorrect structure tag.
TPM_20_E_SELECTOR0x80280098TPM 2.0: Union selector is incorrect.
TPM_20_E_INSUFFICIENT0x8028009ATPM 2.0: The TPM was unable to unmarshal a value because there were not enough octets in the input buffer.
TPM_20_E_SIGNATURE0x8028009BTPM 2.0: The signature is not valid.
TPM_20_E_KEY0x80280087TPM 2.0: Key fields are not compatible with the selected use.
TPM_20_E_POLICY_FAIL0x8028009DTPM 2.0: A policy check failed.
TPM_20_E_INTEGRITY0x8028009FTPM 2.0: Integrity check failed.
TPM_20_E_TICKET0x802800A0TPM 2.0: Invalid ticket.
TPM_20_E_RESERVED_BITS0x802800A1TPM 2.0: Reserved bits not set to zero as required.
TPM_20_E_BAD_AUTH0x802800A2TPM 2.0: Authorization failure without DA implications.
TPM_20_E_EXPIRED0x802800A3TPM 2.0: The policy has expired.
TPM_20_E_POLICY_CC0x802800A4TPM 2.0: The command code in the policy is not the command code of the command or the command code in a policy command references a command that is not implemented.
TPM_20_E_BINDING0x802800A5TPM 2.0: Public and sensitive portions of an object are not cryptographically bound.
TPM_20_E_CURVE0x802800A6TPM 2.0: Curve not supported.
TPM_20_E_ECC_POINT0x802800A7TPM 2.0: Point is not on the required curve.
TPM_20_E_INITIALIZE0x80280100TPM 2.0: TPM not initialized.
TPM_20_E_FAILURE0x80280101TPM 2.0: Commands not being accepted because of a TPM failure.
TPM_20_E_SEQUENCE0x80280103TPM 2.0: Improper use of a sequence handle.
TPM_20_E_PRIVATETPM 2.0: TPM_RC_PRIVATE error.
TPM_20_E_HMAC0x80280119TPM 2.0: TPM_RC_HMAC.
TPM_20_E_DISABLED0x80280120TPM 2.0: TPM_RC_DISABLED.
TPM_20_E_EXCLUSIVE0x80280121TPM 2.0: Command failed because audit sequence required exclusivity.
TPM_20_E_ECC_CURVE0x80280123TPM 2.0: Unsupported ECC curve.
TPM_20_E_AUTH_TYPE0x80280124TPM 2.0: Authorization handle is not correct for command.
TPM_20_E_AUTH_MISSING0x80280125TPM 2.0: Command requires an authorization session for handle and is not present.
TPM_20_E_POLICY0x80280126TPM 2.0: Policy failure in Math Operation or an invalid authPolicy value.
TPM_20_E_PCR0x80280127TPM 2.0: PCR check fail.
TPM_20_E_PCR_CHANGED0x80280128TPM 2.0: PCR have changed since checked.
TPM_20_E_UPGRADE0x8028012DTPM 2.0: The TPM is not in the right mode for upgrade.
TPM_20_E_TOO_MANY_CONTEXTS0x8028012ETPM 2.0: Context ID counter is at maximum.
TPM_20_E_AUTH_UNAVAILABLE0x8028012FTPM 2.0: authValue or authPolicy is not available for selected entity.
TPM_20_E_REBOOT0x80280130TPM 2.0: A _TPM_Init and Startup(CLEAR) is required before the TPM can resume operation.
TPM_20_E_UNBALANCED0x80280131TPM 2.0: The protection algorithms (hash and symmetric) are not reasonably balanced. The digest size of the hash must be larger than the key size of the symmetric algorithm.
TPM_20_E_COMMAND_SIZE0x80280142TPM 2.0: The TPM command's commandSize value is inconsistent with contents of the command buffer; either the size is not the same as the bytes loaded by the hardware interface layer or the value is not large enough to hold a command header.
TPM_20_E_COMMAND_CODE0x80280143TPM 2.0: Command code not supported.
TPM_20_E_AUTHSIZE0x80280144TPM 2.0: The value of authorizationSize is out of range or the number of octets in the authorization Area is greater than required.
TPM_20_E_AUTH_CONTEXT0x80280145TPM 2.0: Use of an authorization session with a context command or another command that cannot have an authorization session.
TPM_20_E_NV_RANGE0x80280146TPM 2.0: NV offset+size is out of range.
TPM_20_E_NV_SIZE0x80280147TPM 2.0: Requested allocation size is larger than allowed.
TPM_20_E_NV_LOCKED0x80280148TPM 2.0: NV access locked.
TPM_20_E_NV_AUTHORIZATION0x80280149TPM 2.0: NV access authorization fails in command actions
TPM_20_E_NV_UNINITIALIZED0x8028014ATPM 2.0: An NV index is used before being initialized or the state saved by TPM2_Shutdown(STATE) could not be restored.
TPM_20_E_NV_SPACE0x8028014BTPM 2.0: Insufficient space for NV allocation.
TPM_20_E_NV_DEFINED0x8028014CTPM 2.0: NV index or persistent object already defined.
TPM_20_E_BAD_CONTEXT0x80280150TPM 2.0: Context in TPM2_ContextLoad() is not valid.
TPM_20_E_CPHASH0x80280151TPM 2.0: chHash value already set or not correct for use.
TPM_20_E_PARENT0x80280152TPM 2.0: Handle for parent is not a valid parent.
TPM_20_E_NEEDS_TEST0x80280153TPM 2.0: Some function needs testing.
TPM_20_E_NO_RESULT0x80280154TPM 2.0: returned when an internal function cannot process a request due to an unspecified problem. This code is usually related to invalid parameters that are not properly filtered by the input unmarshaling code.
TPM_20_E_SENSITIVE0x80280155TPM 2.0: The sensitive area did not unmarshal correctly after decryption - this code is used in lieu of the other unmarshaling errors so that an attacker cannot determine where the unmarshaling error occurred.
TPM_20_E_CONTEXT_GAP0x80280901TPM 2.0: Gap for context ID is too large.
TPM_20_E_OBJECT_MEMORY0x80280902TPM 2.0: Out of memory for object contexts.
TPM_20_E_SESSION_MEMORY0x80280903TPM 2.0: Out of memory for session contexts.
TPM_20_E_MEMORY0x80280904TPM 2.0: Out of shared object/session memory or need space for internal operations.
TPM_20_E_SESSION_HANDLES0x80280905TPM 2.0: Out of session handles - a session must be flushed before a new session may be created.
TPM_20_E_OBJECT_HANDLES0x80280906TPM 2.0: Out of object handles - the handle space for objects is depleted and a reboot is required.
TPM_20_E_LOCALITY0x80280907TPM 2.0: Bad locality.
TPM_20_E_YIELDED0x80280908TPM 2.0: The TPM has suspended operation on the command; forward progress was made and the command may be retried.
TPM_20_E_CANCELED0x80280909TPM 2.0: The command was canceled.
TPM_20_E_TESTING0x8028090ATPM 2.0: TPM is performing self-tests.
TPM_20_E_NV_RATE0x80280920TPM 2.0: The TPM is rate-limiting accesses to prevent wearout of NV.
TPM_20_E_LOCKOUT0x80280921TPM 2.0: Authorization for objects subject to DA protection are not allowed at this time because the TPM is in DA lockout mode.
TPM_20_E_RETRY0x80280922TPM 2.0: The TPM was not able to start the command.
TPM_20_E_NV_UNAVAILABLE0x80280923TPM 2.0: the command may require writing of NV and NV is not current accessible..
TBS_E_INTERNAL_ERROR0x80284001An internal software error has been detected.
TBS_E_BAD_PARAMETER0x80284002One or more input parameters is bad.
TBS_E_INVALID_OUTPUT_POINTER0x80284003A specified output pointer is bad.
TBS_E_INVALID_CONTEXT0x80284004The specified context handle does not refer to a valid context.
TBS_E_INSUFFICIENT_BUFFER0x80284005A specified output buffer is too small.
TBS_E_IOERROR0x80284006An error occurred while communicating with the TPM.
TBS_E_INVALID_CONTEXT_PARAM0x80284007One or more context parameters is invalid.
TBS_E_SERVICE_NOT_RUNNING0x80284008The TBS service is not running and could not be started.
TBS_E_TOO_MANY_TBS_CONTEXTS0x80284009A new context could not be created because there are too many open contexts.
TBS_E_TOO_MANY_RESOURCES0x8028400AA new virtual resource could not be created because there are too many open virtual resources.
TBS_E_SERVICE_START_PENDING0x8028400BThe TBS service has been started but is not yet running.
TBS_E_PPI_NOT_SUPPORTED0x8028400CThe physical presence interface is not supported.
TBS_E_COMMAND_CANCELED0x8028400DThe command was canceled.
TBS_E_BUFFER_TOO_LARGE0x8028400EThe input or output buffer is too large.
TBS_E_TPM_NOT_FOUND0x8028400FA compatible Trusted Platform Module (TPM) Security Device cannot be found on this computer.
TBS_E_SERVICE_DISABLED0x80284010The TBS service has been disabled.
TBS_E_NO_EVENT_LOG0x80284011No TCG event log is available.
TBS_E_ACCESS_DENIED0x80284012The caller does not have the appropriate rights to perform the requested operation.
TBS_E_PROVISIONING_NOT_ALLOWED0x80284013The TPM provisioning action is not allowed by the specified flags. For provisioning to be successful, one of several actions may be required. The TPM management console (tpm.msc) action to make the TPM Ready may help. For further information, see the documentation for the Win32_Tpm WMI method 'Provision'. (The actions that may be required include importing the TPM Owner Authorization value into the system, calling the Win32_Tpm WMI method for provisioning the TPM and specifying TRUE for either 'ForceClear_Allowed' or 'PhysicalPresencePrompts_Allowed' (as indicated by the value returned in the Additional Information), or enabling the TPM in the system BIOS.)
TBS_E_PPI_FUNCTION_UNSUPPORTED0x80284014The Physical Presence Interface of this firmware does not support the requested method.
TBS_E_OWNERAUTH_NOT_FOUND0x80284015The requested TPM OwnerAuth value was not found.
TBS_E_PROVISIONING_INCOMPLETE0x80284016The TPM provisioning did not complete. For more information on completing the provisioning, call the Win32_Tpm WMI method for provisioning the TPM ('Provision') and check the returned Information.
TPMAPI_E_INVALID_STATE0x80290100The command buffer is not in the correct state.
TPMAPI_E_NOT_ENOUGH_DATA0x80290101The command buffer does not contain enough data to satisfy the request.
TPMAPI_E_TOO_MUCH_DATA0x80290102The command buffer cannot contain any more data.
TPMAPI_E_INVALID_OUTPUT_POINTER0x80290103One or more output parameters was NULL or invalid.
TPMAPI_E_INVALID_PARAMETER0x80290104One or more input parameters is invalid.
TPMAPI_E_OUT_OF_MEMORY0x80290105Not enough memory was available to satisfy the request.
TPMAPI_E_BUFFER_TOO_SMALL0x80290106The specified buffer was too small.
TPMAPI_E_INTERNAL_ERROR0x80290107An internal error was detected.
TPMAPI_E_ACCESS_DENIED0x80290108The caller does not have the appropriate rights to perform the requested operation.
TPMAPI_E_AUTHORIZATION_FAILED0x80290109The specified authorization information was invalid.
TPMAPI_E_INVALID_CONTEXT_HANDLE0x8029010AThe specified context handle was not valid.
TPMAPI_E_TBS_COMMUNICATION_ERROR0x8029010BAn error occurred while communicating with the TBS.
TPMAPI_E_TPM_COMMAND_ERROR0x8029010CThe TPM returned an unexpected result.
TPMAPI_E_MESSAGE_TOO_LARGE0x8029010DThe message was too large for the encoding scheme.
TPMAPI_E_INVALID_ENCODING0x8029010EThe encoding in the blob was not recognized.
TPMAPI_E_INVALID_KEY_SIZE0x8029010FThe key size is not valid.
TPMAPI_E_ENCRYPTION_FAILED0x80290110The encryption operation failed.
TPMAPI_E_INVALID_KEY_PARAMS0x80290111The key parameters structure was not valid
TPMAPI_E_INVALID_MIGRATION_AUTHORIZATION_BLOB0x80290112The requested supplied data does not appear to be a valid migration authorization blob.
TPMAPI_E_INVALID_PCR_INDEX0x80290113The specified PCR index was invalid
TPMAPI_E_INVALID_DELEGATE_BLOB0x80290114The data given does not appear to be a valid delegate blob.
TPMAPI_E_INVALID_CONTEXT_PARAMS0x80290115One or more of the specified context parameters was not valid.
TPMAPI_E_INVALID_KEY_BLOB0x80290116The data given does not appear to be a valid key blob
TPMAPI_E_INVALID_PCR_DATA0x80290117The specified PCR data was invalid.
TPMAPI_E_INVALID_OWNER_AUTH0x80290118The format of the owner auth data was invalid.
TPMAPI_E_FIPS_RNG_CHECK_FAILED0x80290119The random number generated did not pass FIPS RNG check.
TPMAPI_E_EMPTY_TCG_LOG0x8029011AThe TCG Event Log does not contain any data.
TPMAPI_E_INVALID_TCG_LOG_ENTRY0x8029011BAn entry in the TCG Event Log was invalid.
TPMAPI_E_TCG_SEPARATOR_ABSENT0x8029011CA TCG Separator was not found.
TPMAPI_E_TCG_INVALID_DIGEST_ENTRY0x8029011DA digest value in a TCG Log entry did not match hashed data.
TPMAPI_E_POLICY_DENIES_OPERATION0x8029011EThe requested operation was blocked by current TPM policy. Please contact your system administrator for assistance.
TBSIMP_E_BUFFER_TOO_SMALL0x80290200The specified buffer was too small.
TBSIMP_E_CLEANUP_FAILED0x80290201The context could not be cleaned up.
TBSIMP_E_INVALID_CONTEXT_HANDLE0x80290202The specified context handle is invalid.
TBSIMP_E_INVALID_CONTEXT_PARAM0x80290203An invalid context parameter was specified.
TBSIMP_E_TPM_ERROR0x80290204An error occurred while communicating with the TPM
TBSIMP_E_HASH_BAD_KEY0x80290205No entry with the specified key was found.
TBSIMP_E_DUPLICATE_VHANDLE0x80290206The specified virtual handle matches a virtual handle already in use.
TBSIMP_E_INVALID_OUTPUT_POINTER0x80290207The pointer to the returned handle location was NULL or invalid
TBSIMP_E_INVALID_PARAMETER0x80290208One or more parameters is invalid
TBSIMP_E_RPC_INIT_FAILED0x80290209The RPC subsystem could not be initialized.
TBSIMP_E_SCHEDULER_NOT_RUNNING0x8029020AThe TBS scheduler is not running.
TBSIMP_E_COMMAND_CANCELED0x8029020BThe command was canceled.
TBSIMP_E_OUT_OF_MEMORY0x8029020CThere was not enough memory to fulfill the request
TBSIMP_E_LIST_NO_MORE_ITEMS0x8029020DThe specified list is empty, or the iteration has reached the end of the list.
TBSIMP_E_LIST_NOT_FOUND0x8029020EThe specified item was not found in the list.
TBSIMP_E_NOT_ENOUGH_SPACE0x8029020FThe TPM does not have enough space to load the requested resource.
TBSIMP_E_NOT_ENOUGH_TPM_CONTEXTS0x80290210There are too many TPM contexts in use.
TBSIMP_E_COMMAND_FAILED0x80290211The TPM command failed.
TBSIMP_E_UNKNOWN_ORDINAL0x80290212The TBS does not recognize the specified ordinal.
TBSIMP_E_RESOURCE_EXPIRED0x80290213The requested resource is no longer available.
TBSIMP_E_INVALID_RESOURCE0x80290214The resource type did not match.
TBSIMP_E_NOTHING_TO_UNLOAD0x80290215No resources can be unloaded.
TBSIMP_E_HASH_TABLE_FULL0x80290216No new entries can be added to the hash table.
TBSIMP_E_TOO_MANY_TBS_CONTEXTS0x80290217A new TBS context could not be created because there are too many open contexts.
TBSIMP_E_TOO_MANY_RESOURCES0x80290218A new virtual resource could not be created because there are too many open virtual resources.
TBSIMP_E_PPI_NOT_SUPPORTED0x80290219The physical presence interface is not supported.
TBSIMP_E_TPM_INCOMPATIBLE0x8029021ATBS is not compatible with the version of TPM found on the system.
TBSIMP_E_NO_EVENT_LOG0x8029021BNo TCG event log is available.
TPM_E_PPI_ACPI_FAILURE0x80290300A general error was detected when attempting to acquire the BIOS's response to a Physical Presence command.
TPM_E_PPI_USER_ABORT0x80290301The user failed to confirm the TPM operation request.
TPM_E_PPI_BIOS_FAILURE0x80290302The BIOS failure prevented the successful execution of the requested TPM operation (e.g. invalid TPM operation request, BIOS communication error with the TPM).
TPM_E_PPI_NOT_SUPPORTED0x80290303The BIOS does not support the physical presence interface.
TPM_E_PPI_BLOCKED_IN_BIOS0x80290304The Physical Presence command was blocked by current BIOS settings. The system owner may be able to reconfigure the BIOS settings to allow the command.
TPM_E_PCP_ERROR_MASK0x80290400This is an error mask to convert Platform Crypto Provider errors to win errors.
TPM_E_PCP_DEVICE_NOT_READY0x80290401The Platform Crypto Device is currently not ready. It needs to be fully provisioned to be operational.
TPM_E_PCP_INVALID_HANDLE0x80290402The handle provided to the Platform Crypto Provider is invalid.
TPM_E_PCP_INVALID_PARAMETER0x80290403A parameter provided to the Platform Crypto Provider is invalid.
TPM_E_PCP_FLAG_NOT_SUPPORTED0x80290404A provided flag to the Platform Crypto Provider is not supported.
TPM_E_PCP_NOT_SUPPORTED0x80290405The requested operation is not supported by this Platform Crypto Provider.
TPM_E_PCP_BUFFER_TOO_SMALL0x80290406The buffer is too small to contain all data. No information has been written to the buffer.
TPM_E_PCP_INTERNAL_ERROR0x80290407An unexpected internal error has occurred in the Platform Crypto Provider.
TPM_E_PCP_AUTHENTICATION_FAILED0x80290408The authorization to use a provider object has failed.
TPM_E_PCP_AUTHENTICATION_IGNORED0x80290409The Platform Crypto Device has ignored the authorization for the provider object, to mitigate against a dictionary attack.
TPM_E_PCP_POLICY_NOT_FOUND0x8029040AThe referenced policy was not found.
TPM_E_PCP_PROFILE_NOT_FOUND0x8029040BThe referenced profile was not found.
TPM_E_PCP_VALIDATION_FAILED0x8029040CThe validation was not successful.
TPM_E_PCP_WRONG_PARENT0x8029040EAn attempt was made to import or load a key under an incorrect storage parent.
TPM_E_KEY_NOT_LOADED0x8029040FThe TPM key is not loaded.
TPM_E_NO_KEY_CERTIFICATION0x80290410The TPM key certification has not been generated.
TPM_E_KEY_NOT_FINALIZED0x80290411The TPM key is not yet finalized.
TPM_E_ATTESTATION_CHALLENGE_NOT_SET0x80290412The TPM attestation challenge is not set.
TPM_E_NOT_PCR_BOUND0x80290413The TPM PCR info is not available.
TPM_E_KEY_ALREADY_FINALIZED0x80290414The TPM key is already finalized.
TPM_E_KEY_USAGE_POLICY_NOT_SUPPORTED0x80290415The TPM key usage policy is not supported.
TPM_E_KEY_USAGE_POLICY_INVALID0x80290416The TPM key usage policy is invalid.
TPM_E_SOFT_KEY_ERROR0x80290417There was a problem with the software key being imported into the TPM.
TPM_E_KEY_NOT_AUTHENTICATED0x80290418The TPM key is not authenticated.
TPM_E_PCP_KEY_NOT_AIK0x80290419The TPM key is not an AIK.
TPM_E_KEY_NOT_SIGNING_KEY0x8029041AThe TPM key is not a signing key.
TPM_E_LOCKED_OUT0x8029041BThe TPM is locked out.
TPM_E_CLAIM_TYPE_NOT_SUPPORTED0x8029041CThe claim type requested is not supported.
TPM_E_VERSION_NOT_SUPPORTED0x8029041DTPM version is not supported.
TPM_E_BUFFER_LENGTH_MISMATCH0x8029041EThe buffer lengths do not match.
TPM_E_PCP_IFX_RSA_KEY_CREATION_BLOCKED0x8029041FThe RSA key creation is blocked on this TPM due to known security vulnerabilities.
TPM_E_PCP_TICKET_MISSING0x80290420A ticket required to use a key was not provided.
TPM_E_PCP_RAW_POLICY_NOT_SUPPORTED0x80290421This key has a raw policy so the KSP can't authenticate against it.
TPM_E_PCP_KEY_HANDLE_INVALIDATED0x80290422The TPM key's handle was unexpectedly invalidated due to a hardware or firmware issue.
TPM_E_PCP_UNSUPPORTED_PSS_SALT0x40290423The requested salt size for signing with RSAPSS does not match what the TPM uses.
TPM_E_PCP_PLATFORM_CLAIM_MAY_BE_OUTDATED0x40290424Validation of the platform claim failed.
TPM_E_PCP_PLATFORM_CLAIM_OUTDATED0x40290425The requested platform claim is for a previous boot.
TPM_E_PCP_PLATFORM_CLAIM_REBOOT0x40290426The platform claim is for a previous boot, and cannot be created without reboot.
TPM_E_EXHAUST_ENABLED0x80290500TPM related network operations are blocked as Zero Exhaust mode is enabled on client.
TPM_E_PROVISIONING_INCOMPLETE0x80290600TPM provisioning did not run to completion.
TPM_E_INVALID_OWNER_AUTH0x80290601An invalid owner authorization value was specified.
TPM_E_TOO_MUCH_DATA0x80290602TPM command returned too much data.
PLA_E_DCS_NOT_FOUND0x80300002Data Collector Set was not found.
PLA_E_DCS_IN_USE0x803000AAThe Data Collector Set or one of its dependencies is already in use.
PLA_E_TOO_MANY_FOLDERS0x80300045Unable to start Data Collector Set because there are too many folders.
PLA_E_NO_MIN_DISK0x80300070Not enough free disk space to start Data Collector Set.
PLA_E_DCS_ALREADY_EXISTS0x803000B7Data Collector Set already exists.
PLA_S_PROPERTY_IGNORED0x00300100Property value will be ignored.
PLA_E_PROPERTY_CONFLICT0x80300101Property value conflict.
PLA_E_DCS_SINGLETON_REQUIRED0x80300102The current configuration for this Data Collector Set requires that it contain exactly one Data Collector.
PLA_E_CREDENTIALS_REQUIRED0x80300103A user account is required in order to commit the current Data Collector Set properties.
PLA_E_DCS_NOT_RUNNING0x80300104Data Collector Set is not running.
PLA_E_CONFLICT_INCL_EXCL_API0x80300105A conflict was detected in the list of include/exclude APIs. Do not specify the same API in both the include list and the exclude list.
PLA_E_NETWORK_EXE_NOT_VALID0x80300106The executable path you have specified refers to a network share or UNC path.
PLA_E_EXE_ALREADY_CONFIGURED0x80300107The executable path you have specified is already configured for API tracing.
PLA_E_EXE_PATH_NOT_VALID0x80300108The executable path you have specified does not exist. Verify that the specified path is correct.
PLA_E_DC_ALREADY_EXISTS0x80300109Data Collector already exists.
PLA_E_DCS_START_WAIT_TIMEOUT0x8030010AThe wait for the Data Collector Set start notification has timed out.
PLA_E_DC_START_WAIT_TIMEOUT0x8030010BThe wait for the Data Collector to start has timed out.
PLA_E_REPORT_WAIT_TIMEOUT0x8030010CThe wait for the report generation tool to finish has timed out.
PLA_E_NO_DUPLICATES0x8030010DDuplicate items are not allowed.
PLA_E_EXE_FULL_PATH_REQUIRED0x8030010EWhen specifying the executable that you want to trace, you must specify a full path to the executable and not just a filename.
PLA_E_INVALID_SESSION_NAME0x8030010FThe session name provided is invalid.
PLA_E_PLA_CHANNEL_NOT_ENABLED0x80300110The Event Log channel Microsoft-Windows-Diagnosis-PLA/Operational must be enabled to perform this operation.
PLA_E_TASKSCHED_CHANNEL_NOT_ENABLED0x80300111The Event Log channel Microsoft-Windows-TaskScheduler must be enabled to perform this operation.
PLA_E_RULES_MANAGER_FAILED0x80300112The execution of the Rules Manager failed.
PLA_E_CABAPI_FAILURE0x80300113An error occurred while attempting to compress or extract the data.
FVE_E_LOCKED_VOLUME0x80310000This drive is locked by BitLocker Drive Encryption. You must unlock this drive from Control Panel.
FVE_E_NOT_ENCRYPTED0x80310001The drive is not encrypted.
FVE_E_NO_TPM_BIOS0x80310002The BIOS did not correctly communicate with the Trusted Platform Module (TPM). Contact the computer manufacturer for BIOS upgrade instructions.
FVE_E_NO_MBR_METRIC0x80310003The BIOS did not correctly communicate with the master boot record (MBR). Contact the computer manufacturer for BIOS upgrade instructions.
FVE_E_NO_BOOTSECTOR_METRIC0x80310004A required TPM measurement is missing. If there is a bootable CD or DVD in your computer, remove it, restart the computer, and turn on BitLocker again. If the problem persists, ensure the master boot record is up to date.
FVE_E_NO_BOOTMGR_METRIC0x80310005The boot sector of this drive is not compatible with BitLocker Drive Encryption. Use the Bootrec.exe tool in the Windows Recovery Environment to update or repair the boot manager (BOOTMGR).
FVE_E_WRONG_BOOTMGR0x80310006The boot manager of this operating system is not compatible with BitLocker Drive Encryption. Use the Bootrec.exe tool in the Windows Recovery Environment to update or repair the boot manager (BOOTMGR).
FVE_E_SECURE_KEY_REQUIRED0x80310007At least one secure key protector is required for this operation to be performed.
FVE_E_NOT_ACTIVATED0x80310008BitLocker Drive Encryption is not enabled on this drive. Turn on BitLocker.
FVE_E_ACTION_NOT_ALLOWED0x80310009BitLocker Drive Encryption cannot perform requested action. This condition may occur when two requests are issued at the same time. Wait a few moments and then try the action again.
FVE_E_AD_SCHEMA_NOT_INSTALLED0x8031000AThe Active Directory Domain Services forest does not contain the required attributes and classes to host BitLocker Drive Encryption or Trusted Platform Module information. Contact your domain administrator to verify that any required BitLocker Active Directory schema extensions have been installed.
FVE_E_AD_INVALID_DATATYPE0x8031000BThe type of the data obtained from Active Directory was not expected. The BitLocker recovery information may be missing or corrupted.
FVE_E_AD_INVALID_DATASIZE0x8031000CThe size of the data obtained from Active Directory was not expected. The BitLocker recovery information may be missing or corrupted.
FVE_E_AD_NO_VALUES0x8031000DThe attribute read from Active Directory does not contain any values. The BitLocker recovery information may be missing or corrupted.
FVE_E_AD_ATTR_NOT_SET0x8031000EThe attribute was not set. Verify that you are logged on with a domain account that has the ability to write information to Active Directory objects.
FVE_E_AD_GUID_NOT_FOUND0x8031000FThe specified attribute cannot be found in Active Directory Domain Services. Contact your domain administrator to verify that any required BitLocker Active Directory schema extensions have been installed.
FVE_E_BAD_INFORMATION0x80310010The BitLocker metadata for the encrypted drive is not valid. You can attempt to repair the drive to restore access.
FVE_E_TOO_SMALL0x80310011The drive cannot be encrypted because it does not have enough free space. Delete any unnecessary data on the drive to create additional free space and then try again.
FVE_E_SYSTEM_VOLUME0x80310012The drive cannot be encrypted because it contains system boot information. Create a separate partition for use as the system drive that contains the boot information and a second partition for use as the operating system drive and then encrypt the operating system drive.
FVE_E_FAILED_WRONG_FS0x80310013The drive cannot be encrypted because the file system is not supported.
FVE_E_BAD_PARTITION_SIZE0x80310014The file system size is larger than the partition size in the partition table. This drive may be corrupt or may have been tampered with. To use it with BitLocker, you must reformat the partition.
FVE_E_NOT_SUPPORTED0x80310015This drive cannot be encrypted.
FVE_E_BAD_DATA0x80310016The data is not valid.
FVE_E_VOLUME_NOT_BOUND0x80310017The data drive specified is not set to automatically unlock on the current computer and cannot be unlocked automatically.
FVE_E_TPM_NOT_OWNED0x80310018You must initialize the Trusted Platform Module (TPM) before you can use BitLocker Drive Encryption.
FVE_E_NOT_DATA_VOLUME0x80310019The operation attempted cannot be performed on an operating system drive.
FVE_E_AD_INSUFFICIENT_BUFFER0x8031001AThe buffer supplied to a function was insufficient to contain the returned data. Increase the buffer size before running the function again.
FVE_E_CONV_READ0x8031001BA read operation failed while converting the drive. The drive was not converted. Please re-enable BitLocker.
FVE_E_CONV_WRITE0x8031001CA write operation failed while converting the drive. The drive was not converted. Please re-enable BitLocker.
FVE_E_KEY_REQUIRED0x8031001DOne or more BitLocker key protectors are required. You cannot delete the last key on this drive.
FVE_E_CLUSTERING_NOT_SUPPORTED0x8031001ECluster configurations are not supported by BitLocker Drive Encryption.
FVE_E_VOLUME_BOUND_ALREADY0x8031001FThe drive specified is already configured to be automatically unlocked on the current computer.
FVE_E_OS_NOT_PROTECTED0x80310020The operating system drive is not protected by BitLocker Drive Encryption.
FVE_E_PROTECTION_DISABLED0x80310021BitLocker Drive Encryption has been suspended on this drive. All BitLocker key protectors configured for this drive are effectively disabled, and the drive will be automatically unlocked using an unencrypted (clear) key.
FVE_E_RECOVERY_KEY_REQUIRED0x80310022The drive you are attempting to lock does not have any key protectors available for encryption because BitLocker protection is currently suspended. Re-enable BitLocker to lock this drive.
FVE_E_FOREIGN_VOLUME0x80310023BitLocker cannot use the Trusted Platform Module (TPM) to protect a data drive. TPM protection can only be used with the operating system drive.
FVE_E_OVERLAPPED_UPDATE0x80310024The BitLocker metadata for the encrypted drive cannot be updated because it was locked for updating by another process. Please try this process again.
FVE_E_TPM_SRK_AUTH_NOT_ZERO0x80310025The authorization data for the storage root key (SRK) of the Trusted Platform Module (TPM) is not zero and is therefore incompatible with BitLocker. Please initialize the TPM before attempting to use it with BitLocker.
FVE_E_FAILED_SECTOR_SIZE0x80310026The drive encryption algorithm cannot be used on this sector size.
FVE_E_FAILED_AUTHENTICATION0x80310027The drive cannot be unlocked with the key provided. Confirm that you have provided the correct key and try again.
FVE_E_NOT_OS_VOLUME0x80310028The drive specified is not the operating system drive.
FVE_E_AUTOUNLOCK_ENABLED0x80310029BitLocker Drive Encryption cannot be turned off on the operating system drive until the auto unlock feature has been disabled for the fixed data drives and removable data drives associated with this computer.
FVE_E_WRONG_BOOTSECTOR0x8031002AThe system partition boot sector does not perform Trusted Platform Module (TPM) measurements. Use the Bootrec.exe tool in the Windows Recovery Environment to update or repair the boot sector.
FVE_E_WRONG_SYSTEM_FS0x8031002BBitLocker Drive Encryption operating system drives must be formatted with the NTFS file system in order to be encrypted. Convert the drive to NTFS, and then turn on BitLocker.
FVE_E_POLICY_PASSWORD_REQUIRED0x8031002CGroup Policy settings require that a recovery password be specified before encrypting the drive.
FVE_E_CANNOT_SET_FVEK_ENCRYPTED0x8031002DThe drive encryption algorithm and key cannot be set on a previously encrypted drive. To encrypt this drive with BitLocker Drive Encryption, remove the previous encryption and then turn on BitLocker.
FVE_E_CANNOT_ENCRYPT_NO_KEY0x8031002EBitLocker Drive Encryption cannot encrypt the specified drive because an encryption key is not available. Add a key protector to encrypt this drive.
FVE_E_BOOTABLE_CDDVD0x80310030BitLocker Drive Encryption detected bootable media (CD or DVD) in the computer. Remove the media and restart the computer before configuring BitLocker.
FVE_E_PROTECTOR_EXISTS0x80310031This key protector cannot be added. Only one key protector of this type is allowed for this drive.
FVE_E_RELATIVE_PATH0x80310032The recovery password file was not found because a relative path was specified. Recovery passwords must be saved to a fully qualified path. Environment variables configured on the computer can be used in the path.
FVE_E_PROTECTOR_NOT_FOUND0x80310033The specified key protector was not found on the drive. Try another key protector.
FVE_E_INVALID_KEY_FORMAT0x80310034The recovery key provided is corrupt and cannot be used to access the drive. An alternative recovery method, such as recovery password, a data recovery agent, or a backup version of the recovery key must be used to recover access to the drive.
FVE_E_INVALID_PASSWORD_FORMAT0x80310035The format of the recovery password provided is invalid. BitLocker recovery passwords are 48 digits. Verify that the recovery password is in the correct format and then try again.
FVE_E_FIPS_RNG_CHECK_FAILED0x80310036The random number generator check test failed.
FVE_E_FIPS_PREVENTS_RECOVERY_PASSWORD0x80310037The Group Policy setting requiring FIPS compliance prevents a local recovery password from being generated or used by BitLocker Drive Encryption. When operating in FIPS-compliant mode, BitLocker recovery options can be either a recovery key stored on a USB drive or recovery through a data recovery agent.
FVE_E_FIPS_PREVENTS_EXTERNAL_KEY_EXPORT0x80310038The Group Policy setting requiring FIPS compliance prevents the recovery password from being saved to Active Directory. When operating in FIPS-compliant mode, BitLocker recovery options can be either a recovery key stored on a USB drive or recovery through a data recovery agent. Check your Group Policy settings configuration.
FVE_E_NOT_DECRYPTED0x80310039The drive must be fully decrypted to complete this operation.
FVE_E_INVALID_PROTECTOR_TYPE0x8031003AThe key protector specified cannot be used for this operation.
FVE_E_NO_PROTECTORS_TO_TEST0x8031003BNo key protectors exist on the drive to perform the hardware test.
FVE_E_KEYFILE_NOT_FOUND0x8031003CThe BitLocker startup key or recovery password cannot be found on the USB device. Verify that you have the correct USB device, that the USB device is plugged into the computer on an active USB port, restart the computer, and then try again. If the problem persists, contact the computer manufacturer for BIOS upgrade instructions.
FVE_E_KEYFILE_INVALID0x8031003DThe BitLocker startup key or recovery password file provided is corrupt or invalid. Verify that you have the correct startup key or recovery password file and try again.
FVE_E_KEYFILE_NO_VMK0x8031003EThe BitLocker encryption key cannot be obtained from the startup key or recovery password. Verify that you have the correct startup key or recovery password and try again.
FVE_E_TPM_DISABLED0x8031003FThe Trusted Platform Module (TPM) is disabled. The TPM must be enabled, initialized, and have valid ownership before it can be used with BitLocker Drive Encryption.
FVE_E_NOT_ALLOWED_IN_SAFE_MODE0x80310040The BitLocker configuration of the specified drive cannot be managed because this computer is currently operating in Safe Mode. While in Safe Mode, BitLocker Drive Encryption can only be used for recovery purposes.
FVE_E_TPM_INVALID_PCR0x80310041The Trusted Platform Module (TPM) was not able to unlock the drive because the system boot information has changed or a PIN was not provided correctly. Verify that the drive has not been tampered with and that changes to the system boot information were caused by a trusted source. After verifying that the drive is safe to access, use the BitLocker recovery console to unlock the drive and then suspend and resume BitLocker to update system boot information that BitLocker associates with this drive.
FVE_E_TPM_NO_VMK0x80310042The BitLocker encryption key cannot be obtained from the Trusted Platform Module (TPM).
FVE_E_PIN_INVALID0x80310043The BitLocker encryption key cannot be obtained from the Trusted Platform Module (TPM) and PIN.
FVE_E_AUTH_INVALID_APPLICATION0x80310044A boot application has changed since BitLocker Drive Encryption was enabled.
FVE_E_AUTH_INVALID_CONFIG0x80310045The Boot Configuration Data (BCD) settings have changed since BitLocker Drive Encryption was enabled.
FVE_E_FIPS_DISABLE_PROTECTION_NOT_ALLOWED0x80310046The Group Policy setting requiring FIPS compliance prohibits the use of unencrypted keys, which prevents BitLocker from being suspended on this drive. Please contact your domain administrator for more information.
FVE_E_FS_NOT_EXTENDED0x80310047This drive cannot be encrypted by BitLocker Drive Encryption because the file system does not extend to the end of the drive. Repartition this drive and then try again.
FVE_E_FIRMWARE_TYPE_NOT_SUPPORTED0x80310048BitLocker Drive Encryption cannot be enabled on the operating system drive. Contact the computer manufacturer for BIOS upgrade instructions.
FVE_E_NO_LICENSE0x80310049This version of Windows does not include BitLocker Drive Encryption. To use BitLocker Drive Encryption, please upgrade the operating system.
FVE_E_NOT_ON_STACK0x8031004ABitLocker Drive Encryption cannot be used because critical BitLocker system files are missing or corrupted. Use Windows Startup Repair to restore these files to your computer.
FVE_E_FS_MOUNTED0x8031004BThe drive cannot be locked when the drive is in use.
FVE_E_TOKEN_NOT_IMPERSONATED0x8031004CThe access token associated with the current thread is not an impersonated token.
FVE_E_DRY_RUN_FAILED0x8031004DThe BitLocker encryption key cannot be obtained. Verify that the Trusted Platform Module (TPM) is enabled and ownership has been taken. If this computer does not have a TPM, verify that the USB drive is inserted and available.
FVE_E_REBOOT_REQUIRED0x8031004EYou must restart your computer before continuing with BitLocker Drive Encryption.
FVE_E_DEBUGGER_ENABLED0x8031004FDrive encryption cannot occur while boot debugging is enabled. Use the bcdedit command-line tool to turn off boot debugging.
FVE_E_RAW_ACCESS0x80310050No action was taken as BitLocker Drive Encryption is in raw access mode.
FVE_E_RAW_BLOCKED0x80310051BitLocker Drive Encryption cannot enter raw access mode for this drive because the drive is currently in use.
FVE_E_BCD_APPLICATIONS_PATH_INCORRECT0x80310052The path specified in the Boot Configuration Data (BCD) for a BitLocker Drive Encryption integrity-protected application is incorrect. Please verify and correct your BCD settings and try again.
FVE_E_NOT_ALLOWED_IN_VERSION0x80310053BitLocker Drive Encryption can only be used for limited provisioning or recovery purposes when the computer is running in pre-installation or recovery environments.
FVE_E_NO_AUTOUNLOCK_MASTER_KEY0x80310054The auto-unlock master key was not available from the operating system drive.
FVE_E_MOR_FAILED0x80310055The system firmware failed to enable clearing of system memory when the computer was restarted.
FVE_E_HIDDEN_VOLUME0x80310056The hidden drive cannot be encrypted.
FVE_E_TRANSIENT_STATE0x80310057BitLocker encryption keys were ignored because the drive was in a transient state.
FVE_E_PUBKEY_NOT_ALLOWED0x80310058Public key based protectors are not allowed on this drive.
FVE_E_VOLUME_HANDLE_OPEN0x80310059BitLocker Drive Encryption is already performing an operation on this drive. Please complete all operations before continuing.
FVE_E_NO_FEATURE_LICENSE0x8031005AThis version of Windows does not support this feature of BitLocker Drive Encryption. To use this feature, upgrade the operating system.
FVE_E_INVALID_STARTUP_OPTIONS0x8031005BThe Group Policy settings for BitLocker startup options are in conflict and cannot be applied. Contact your system administrator for more information.
FVE_E_POLICY_RECOVERY_PASSWORD_NOT_ALLOWED0x8031005CGroup policy settings do not permit the creation of a recovery password.
FVE_E_POLICY_RECOVERY_PASSWORD_REQUIRED0x8031005DGroup policy settings require the creation of a recovery password.
FVE_E_POLICY_RECOVERY_KEY_NOT_ALLOWED0x8031005EGroup policy settings do not permit the creation of a recovery key.
FVE_E_POLICY_RECOVERY_KEY_REQUIRED0x8031005FGroup policy settings require the creation of a recovery key.
FVE_E_POLICY_STARTUP_PIN_NOT_ALLOWED0x80310060Group policy settings do not permit the use of a PIN at startup. Please choose a different BitLocker startup option.
FVE_E_POLICY_STARTUP_PIN_REQUIRED0x80310061Group policy settings require the use of a PIN at startup. Please choose this BitLocker startup option.
FVE_E_POLICY_STARTUP_KEY_NOT_ALLOWED0x80310062Group policy settings do not permit the use of a startup key. Please choose a different BitLocker startup option.
FVE_E_POLICY_STARTUP_KEY_REQUIRED0x80310063Group policy settings require the use of a startup key. Please choose this BitLocker startup option.
FVE_E_POLICY_STARTUP_PIN_KEY_NOT_ALLOWED0x80310064Group policy settings do not permit the use of a startup key and PIN. Please choose a different BitLocker startup option.
FVE_E_POLICY_STARTUP_PIN_KEY_REQUIRED0x80310065Group policy settings require the use of a startup key and PIN. Please choose this BitLocker startup option.
FVE_E_POLICY_STARTUP_TPM_NOT_ALLOWED0x80310066Group policy does not permit the use of TPM-only at startup. Please choose a different BitLocker startup option.
FVE_E_POLICY_STARTUP_TPM_REQUIRED0x80310067Group policy settings require the use of TPM-only at startup. Please choose this BitLocker startup option.
FVE_E_POLICY_INVALID_PIN_LENGTH0x80310068The PIN provided does not meet minimum or maximum length requirements.
FVE_E_KEY_PROTECTOR_NOT_SUPPORTED0x80310069The key protector is not supported by the version of BitLocker Drive Encryption currently on the drive. Upgrade the drive to add the key protector.
FVE_E_POLICY_PASSPHRASE_NOT_ALLOWED0x8031006AGroup policy settings do not permit the creation of a password.
FVE_E_POLICY_PASSPHRASE_REQUIRED0x8031006BGroup policy settings require the creation of a password.
FVE_E_FIPS_PREVENTS_PASSPHRASE0x8031006CThe group policy setting requiring FIPS compliance prevented the password from being generated or used. Please contact your domain administrator for more information.
FVE_E_OS_VOLUME_PASSPHRASE_NOT_ALLOWED0x8031006DA password cannot be added to the operating system drive.
FVE_E_INVALID_BITLOCKER_OID0x8031006EThe BitLocker object identifier (OID) on the drive appears to be invalid or corrupt. Use manage-BDE to reset the OID on this drive.
FVE_E_VOLUME_TOO_SMALL0x8031006FThe drive is too small to be protected using BitLocker Drive Encryption.
FVE_E_DV_NOT_SUPPORTED_ON_FS0x80310070The selected discovery drive type is incompatible with the file system on the drive. BitLocker To Go discovery drives must be created on FAT formatted drives.
FVE_E_DV_NOT_ALLOWED_BY_GP0x80310071The selected discovery drive type is not allowed by the computer's Group Policy settings. Verify that Group Policy settings allow the creation of discovery drives for use with BitLocker To Go.
FVE_E_POLICY_USER_CERTIFICATE_NOT_ALLOWED0x80310072Group Policy settings do not permit user certificates such as smart cards to be used with BitLocker Drive Encryption.
FVE_E_POLICY_USER_CERTIFICATE_REQUIRED0x80310073Group Policy settings require that you have a valid user certificate, such as a smart card, to be used with BitLocker Drive Encryption.
FVE_E_POLICY_USER_CERT_MUST_BE_HW0x80310074Group Policy settings requires that you use a smart card-based key protector with BitLocker Drive Encryption.
FVE_E_POLICY_USER_CONFIGURE_FDV_AUTOUNLOCK_NOT_ALLOWED0x80310075Group Policy settings do not permit BitLocker-protected fixed data drives to be automatically unlocked.
FVE_E_POLICY_USER_CONFIGURE_RDV_AUTOUNLOCK_NOT_ALLOWED0x80310076Group Policy settings do not permit BitLocker-protected removable data drives to be automatically unlocked.
FVE_E_POLICY_USER_CONFIGURE_RDV_NOT_ALLOWED0x80310077Group Policy settings do not permit you to configure BitLocker Drive Encryption on removable data drives.
FVE_E_POLICY_USER_ENABLE_RDV_NOT_ALLOWED0x80310078Group Policy settings do not permit you to turn on BitLocker Drive Encryption on removable data drives. Please contact your system administrator if you need to turn on BitLocker.
FVE_E_POLICY_USER_DISABLE_RDV_NOT_ALLOWED0x80310079Group Policy settings do not permit turning off BitLocker Drive Encryption on removable data drives. Please contact your system administrator if you need to turn off BitLocker.
FVE_E_POLICY_INVALID_PASSPHRASE_LENGTH0x80310080Your password does not meet minimum password length requirements. By default, passwords must be at least 8 characters in length. Check with your system administrator for the password length requirement in your organization.
FVE_E_POLICY_PASSPHRASE_TOO_SIMPLE0x80310081Your password does not meet the complexity requirements set by your system administrator. Try adding upper and lowercase characters, numbers, and symbols.
FVE_E_RECOVERY_PARTITION0x80310082This drive cannot be encrypted because it is reserved for Windows System Recovery Options.
FVE_E_POLICY_CONFLICT_FDV_RK_OFF_AUK_ON0x80310083BitLocker Drive Encryption cannot be applied to this drive because of conflicting Group Policy settings. BitLocker cannot be configured to automatically unlock fixed data drives when user recovery options are disabled. If you want BitLocker-protected fixed data drives to be automatically unlocked after key validation has occurred, please ask your system administrator to resolve the settings conflict before enabling BitLocker.
FVE_E_POLICY_CONFLICT_RDV_RK_OFF_AUK_ON0x80310084BitLocker Drive Encryption cannot be applied to this drive because of conflicting Group Policy settings. BitLocker cannot be configured to automatically unlock removable data drives when user recovery option are disabled. If you want BitLocker-protected removable data drives to be automatically unlocked after key validation has occured, please ask your system administrator to resolve the settings conflict before enabling BitLocker.
FVE_E_NON_BITLOCKER_OID0x80310085The Enhanced Key Usage (EKU) attribute of the specified certificate does not permit it to be used for BitLocker Drive Encryption. BitLocker does not require that a certificate have an EKU attribute, but if one is configured it must be set to an object identifier (OID) that matches the OID configured for BitLocker.
FVE_E_POLICY_PROHIBITS_SELFSIGNED0x80310086BitLocker Drive Encryption cannot be applied to this drive as currently configured because of Group Policy settings. The certificate you provided for drive encryption is self-signed. Current Group Policy settings do not permit the use of self-signed certificates. Obtain a new certificate from your certification authority before attempting to enable BitLocker.
FVE_E_POLICY_CONFLICT_RO_AND_STARTUP_KEY_REQUIRED0x80310087BitLocker Encryption cannot be applied to this drive because of conflicting Group Policy settings. When write access to drives not protected by BitLocker is denied, the use of a USB startup key cannot be required. Please have your system administrator resolve these policy conflicts before attempting to enable BitLocker.
FVE_E_CONV_RECOVERY_FAILED0x80310088BitLocker Drive Encryption cannot be applied to this drive because there are conflicting Group Policy settings for recovery options on operating system drives. Storing recovery information to Active Directory Domain Services cannot be required when the generation of recovery passwords is not permitted. Please have your system administrator resolve these policy conflicts before attempting to enable BitLocker.
FVE_E_VIRTUALIZED_SPACE_TOO_BIG0x80310089The requested virtualization size is too big.
FVE_E_POLICY_CONFLICT_OSV_RP_OFF_ADB_ON0x80310090BitLocker Drive Encryption cannot be applied to this drive because there are conflicting Group Policy settings for recovery options on operating system drives. Storing recovery information to Active Directory Domain Services cannot be required when the generation of recovery passwords is not permitted. Please have your system administrator resolve these policy conflicts before attempting to enable BitLocker.
FVE_E_POLICY_CONFLICT_FDV_RP_OFF_ADB_ON0x80310091BitLocker Drive Encryption cannot be applied to this drive because there are conflicting Group Policy settings for recovery options on fixed data drives. Storing recovery information to Active Directory Domain Services cannot be required when the generation of recovery passwords is not permitted. Please have your system administrator resolve these policy conflicts before attempting to enable BitLocker.
FVE_E_POLICY_CONFLICT_RDV_RP_OFF_ADB_ON0x80310092BitLocker Drive Encryption cannot be applied to this drive because there are conflicting Group Policy settings for recovery options on removable data drives. Storing recovery information to Active Directory Domain Services cannot be required when the generation of recovery passwords is not permitted. Please have your system administrator resolve these policy conflicts before attempting to enable BitLocker.
FVE_E_NON_BITLOCKER_KU0x80310093The Key Usage (KU) attribute of the specified certificate does not permit it to be used for BitLocker Drive Encryption. BitLocker does not require that a certificate have a KU attribute, but if one is configured it must be set to either Key Encipherment or Key Agreement.
FVE_E_PRIVATEKEY_AUTH_FAILED0x80310094The private key associated with the specified certificate cannot be authorized. The private key authorization was either not provided or the provided authorization was invalid.
FVE_E_REMOVAL_OF_DRA_FAILED0x80310095Removal of the data recovery agent certificate must be done using the Certificates snap-in.
FVE_E_OPERATION_NOT_SUPPORTED_ON_VISTA_VOLUME0x80310096This drive was encrypted using the version of BitLocker Drive Encryption included with Windows Vista and Windows Server 2008 which does not support organizational identifiers. To specify organizational identifiers for this drive upgrade the drive encryption to the latest version using the "manage-bde -upgrade" command.
FVE_E_CANT_LOCK_AUTOUNLOCK_ENABLED_VOLUME0x80310097The drive cannot be locked because it is automatically unlocked on this computer. Remove the automatic unlock protector to lock this drive.
FVE_E_FIPS_HASH_KDF_NOT_ALLOWED0x80310098The default Bitlocker Key Derivation Function SP800-56A for ECC smart cards is not supported by your smart card. The Group Policy setting requiring FIPS-compliance prevents BitLocker from using any other key derivation function for encryption. You have to use a FIPS compliant smart card in FIPS restricted environments.
FVE_E_ENH_PIN_INVALID0x80310099The BitLocker encryption key could not be obtained from the Trusted Platform Module (TPM) and enhanced PIN. Try using a PIN containing only numerals.
FVE_E_INVALID_PIN_CHARS0x8031009AThe requested TPM PIN contains invalid characters.
FVE_E_INVALID_DATUM_TYPE0x8031009BThe management information stored on the drive contained an unknown type. If you are using an old version of Windows, try accessing the drive from the latest version.
FVE_E_EFI_ONLY0x8031009CThe feature is only supported on EFI systems.
FVE_E_MULTIPLE_NKP_CERTS0x8031009DMore than one Network Key Protector certificate has been found on the system.
FVE_E_REMOVAL_OF_NKP_FAILED0x8031009ERemoval of the Network Key Protector certificate must be done using the Certificates snap-in.
FVE_E_INVALID_NKP_CERT0x8031009FAn invalid certificate has been found in the Network Key Protector certificate store.
FVE_E_NO_EXISTING_PIN0x803100A0This drive isn't protected with a PIN.
FVE_E_PROTECTOR_CHANGE_PIN_MISMATCH0x803100A1Please enter the correct current PIN.
FVE_E_PROTECTOR_CHANGE_BY_STD_USER_DISALLOWED0x803100A2You must be logged on with an administrator account to change the PIN or password. Click the link to reset the PIN or password as an administrator.
FVE_E_PROTECTOR_CHANGE_MAX_PIN_CHANGE_ATTEMPTS_REACHED0x803100A3BitLocker has disabled PIN and password changes after too many failed requests. Click the link to reset the PIN or password as an administrator.
FVE_E_POLICY_PASSPHRASE_REQUIRES_ASCII0x803100A4Your system administrator requires that passwords contain only printable ASCII characters. This includes unaccented letters (A-Z, a-z), numbers (0-9), space, arithmetic signs, common punctuation, separators, and the following symbols: # $ & @ ^ _ ~ .
FVE_E_FULL_ENCRYPTION_NOT_ALLOWED_ON_TP_STORAGE0x803100A5BitLocker Drive Encryption only supports used space only encryption on thin provisioned storage.
FVE_E_WIPE_NOT_ALLOWED_ON_TP_STORAGE0x803100A6BitLocker Drive Encryption does not support wiping free space on thin provisioned storage.
FVE_E_KEY_LENGTH_NOT_SUPPORTED_BY_EDRIVE0x803100A7The required authentication key length is not supported by the drive.
FVE_E_NO_EXISTING_PASSPHRASE0x803100A8This drive isn't protected with a password.
FVE_E_PROTECTOR_CHANGE_PASSPHRASE_MISMATCH0x803100A9Please enter the correct current password.
FVE_E_PASSPHRASE_TOO_LONG0x803100AAThe password cannot exceed 256 characters.
FVE_E_NO_PASSPHRASE_WITH_TPM0x803100ABA password key protector cannot be added because a TPM protector exists on the drive.
FVE_E_NO_TPM_WITH_PASSPHRASE0x803100ACA TPM key protector cannot be added because a password protector exists on the drive.
FVE_E_NOT_ALLOWED_ON_CSV_STACK0x803100ADThis command can only be performed from the coordinator node for the specified CSV volume.
FVE_E_NOT_ALLOWED_ON_CLUSTER0x803100AEThis command cannot be performed on a volume when it is part of a cluster.
FVE_E_EDRIVE_NO_FAILOVER_TO_SW0x803100AFBitLocker did not revert to using BitLocker software encryption due to group policy configuration.
FVE_E_EDRIVE_BAND_IN_USE0x803100B0The drive cannot be managed by BitLocker because the drive's hardware encryption feature is already in use.
FVE_E_EDRIVE_DISALLOWED_BY_GP0x803100B1Group Policy settings do not allow the use of hardware-based encryption.
FVE_E_EDRIVE_INCOMPATIBLE_VOLUME0x803100B2The drive specified does not support hardware-based encryption.
FVE_E_NOT_ALLOWED_TO_UPGRADE_WHILE_CONVERTING0x803100B3BitLocker cannot be upgraded during disk encryption or decryption.
FVE_E_EDRIVE_DV_NOT_SUPPORTED0x803100B4Discovery Volumes are not supported for volumes using hardware encryption.
FVE_E_NO_PREBOOT_KEYBOARD_DETECTED0x803100B5No pre-boot keyboard detected. The user may not be able to provide required input to unlock the volume.
FVE_E_NO_PREBOOT_KEYBOARD_OR_WINRE_DETECTED0x803100B6No pre-boot keyboard or Windows Recovery Environment detected. The user may not be able to provide required input to unlock the volume.
FVE_E_POLICY_REQUIRES_STARTUP_PIN_ON_TOUCH_DEVICE0x803100B7Group Policy settings require the creation of a startup PIN, but a pre-boot keyboard is not available on this device. The user may not be able to provide required input to unlock the volume.
FVE_E_POLICY_REQUIRES_RECOVERY_PASSWORD_ON_TOUCH_DEVICE0x803100B8Group Policy settings require the creation of a recovery password, but neither a pre-boot keyboard nor Windows Recovery Environment is available on this device. The user may not be able to provide required input to unlock the volume.
FVE_E_WIPE_CANCEL_NOT_APPLICABLE0x803100B9Wipe of free space is not currently taking place.
FVE_E_SECUREBOOT_DISABLED0x803100BABitLocker cannot use Secure Boot for platform integrity because Secure Boot has been disabled.
FVE_E_SECUREBOOT_CONFIGURATION_INVALID0x803100BBBitLocker cannot use Secure Boot for platform integrity because the Secure Boot configuration does not meet the requirements for BitLocker.
FVE_E_EDRIVE_DRY_RUN_FAILED0x803100BCYour computer doesn't support BitLocker hardware-based encryption. Check with your computer manufacturer for firmware updates.
FVE_E_SHADOW_COPY_PRESENT0x803100BDBitLocker cannot be enabled on the volume because it contains a Volume Shadow Copy. Remove all Volume Shadow Copies before encrypting the volume.
FVE_E_POLICY_INVALID_ENHANCED_BCD_SETTINGS0x803100BEBitLocker Drive Encryption cannot be applied to this drive because the Group Policy setting for Enhanced Boot Configuration Data contains invalid data. Please have your system administrator resolve this invalid configuration before attempting to enable BitLocker.
FVE_E_EDRIVE_INCOMPATIBLE_FIRMWARE0x803100BFThis PC's firmware is not capable of supporting hardware encryption.
FVE_E_PROTECTOR_CHANGE_MAX_PASSPHRASE_CHANGE_ATTEMPTS_REACHED0x803100C0BitLocker has disabled password changes after too many failed requests. Click the link to reset the password as an administrator.
FVE_E_PASSPHRASE_PROTECTOR_CHANGE_BY_STD_USER_DISALLOWED0x803100C1You must be logged on with an administrator account to change the password. Click the link to reset the password as an administrator.
FVE_E_LIVEID_ACCOUNT_SUSPENDED0x803100C2BitLocker cannot save the recovery password because the specified Microsoft account is Suspended.
FVE_E_LIVEID_ACCOUNT_BLOCKED0x803100C3BitLocker cannot save the recovery password because the specified MIcrosoft account is Blocked.
FVE_E_NOT_PROVISIONED_ON_ALL_VOLUMES0x803100C4This PC is not provisioned to support device encryption. Please enable BitLocker on all volumes to comply with device encryption policy.
FVE_E_DE_FIXED_DATA_NOT_SUPPORTED0x803100C5This PC cannot support device encryption because unencrypted fixed data volumes are present.
FVE_E_DE_HARDWARE_NOT_COMPLIANT0x803100C6This PC does not meet the hardware requirements to support device encryption.
FVE_E_DE_WINRE_NOT_CONFIGURED0x803100C7This PC cannot support device encryption because WinRE is not properly configured.
FVE_E_DE_PROTECTION_SUSPENDED0x803100C8Protection is enabled on the volume but has been suspended. This is likely to have happened due to an update being applied to your system. Please try again after a reboot.
FVE_E_DE_OS_VOLUME_NOT_PROTECTED0x803100C9This PC is not provisioned to support device encryption.
FVE_E_DE_DEVICE_LOCKEDOUT0x803100CADevice Lock has been triggered due to too many incorrect password attempts.
FVE_E_DE_PROTECTION_NOT_YET_ENABLED0x803100CBProtection has not been enabled on the volume. Enabling protection requires a connected account. If you already have a connected account and are seeing this error, please refer to the event log for more information.
FVE_E_INVALID_PIN_CHARS_DETAILED0x803100CCYour PIN can only contain numbers from 0 to 9.
FVE_E_DEVICE_LOCKOUT_COUNTER_UNAVAILABLE0x803100CDBitLocker cannot use hardware replay protection because no counter is available on your PC.
FVE_E_DEVICELOCKOUT_COUNTER_MISMATCH0x803100CEDevice Lockout state validation failed due to counter mismatch.
FVE_E_BUFFER_TOO_LARGE0x803100CFThe input buffer is too large.
536 entries

Article text from the Win32 documentation (opens in a new tab), by Microsoft, under the CC BY 4.0 (opens in a new tab) licence.