{"content":"<div></div>","rawMetadata":{"metadata":{"_op_canonicalUrlPrefix":"https://learn.microsoft.com/zh-cn/powershell/","_op_gitContributorInformation":{"author":{"display_name":"Banreet Kaur","id":"92906285","name":"Banreet","profile_url":"https://github.com/Banreet"},"contributors":[{"display_name":"Aaron Czechowski","id":"26784733","name":"aczechowski","profile_url":"https://github.com/aczechowski"}],"update_at":"2026/6/25","updated_at_date_time":"2026-06-25T23:20:43.7628885Z"},"_path":"module/configurationmanager/new-cmblencryptionmethodwithxts.json","_rel":"../../","_tocRel":"../sccm-ps/toc.json","apiPlatform":"powershell","author":"Banreet","breadcrumb_path":"/powershell/sccm/bread/toc.json","canonical_url":"https://learn.microsoft.com/zh-cn/powershell/module/configurationmanager/new-cmblencryptionmethodwithxts?view=sccm-ps","content_git_url":"https://github.com/MicrosoftDocs/sccm-docs-powershell-ref/blob/main/sccm-ps/ConfigurationManager/New-CMBLEncryptionMethodWithXts.md","default_moniker":"sccm-ps","depot_name":"MSDN.sccm-powershell","document_id":"248e5d5b-d642-609f-4464-9e18a8565360","document_version_independent_id":"91a83485-0fb0-6926-8390-12ae3585c0b5","external help file":"AdminUI.PS.dll-Help.xml","feedback_product_url":"https://feedbackportal.microsoft.com/feedback/forum/4669adfc-ee1b-ec11-b6e7-0022481f8472","feedback_system":"Standard","git_commit_id":"c74b3f4574af7a8a480adb998b311f6eeeb3e856","gitcommit":"https://github.com/MicrosoftDocs/sccm-docs-powershell/blob/c74b3f4574af7a8a480adb998b311f6eeeb3e856/sccm-ps/ConfigurationManager/New-CMBLEncryptionMethodWithXts.md","github_contributors":["aczechowski"],"locale":"zh-cn","manager":"laurawi","Module Name":"ConfigurationManager","monikers":["sccm-ps"],"ms.author":"dannygu","ms.date":"08/13/2020","ms.service":"configuration-manager","ms.subservice":"other","ms.topic":"reference","online version":"","open_to_public_contributors":true,"original_content_git_url":"https://github.com/MicrosoftDocs/sccm-docs-powershell/blob/live/sccm-ps/ConfigurationManager/New-CMBLEncryptionMethodWithXts.md","original_content_git_url_template":"{repo}/blob/{branch}/sccm-ps/ConfigurationManager/New-CMBLEncryptionMethodWithXts.md","PlatyPS schema version":"2.0.0","products":["https://authoring-docs-microsoft.poolparty.biz/devrel/f1499c3b-793f-48c3-a9ce-20285bcc6541"],"site_name":"Docs","titleSuffix":"Configuration Manager","uhfHeaderId":"MSDocsHeader-Powershell","updated_at":"2026-06-25 11:20 PM","xrefs":[{"href":"https://learn.microsoft.com/powershell/module/configurationmanager/new-cmblencryptionmethodwithxts","monikerGroup":"f98fea35b6ac2b0f56c6ee5ec06ffce9","name":"New-CMBLEncryptionMethodWithXts","schemaType":"PowershellCmdlet","summary":"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。</p>\n","uid":"ConfigurationManager.New-CMBLEncryptionMethodWithXts"}],"ocv-translation-feedback":true},"_xrefmap":{"ConfigurationManager":{"href":"./","monikerGroup":"f98fea35b6ac2b0f56c6ee5ec06ffce9","name":"ConfigurationManager","schemaType":"PowershellModule","uid":"ConfigurationManager"},"ConfigurationManager.New-CMBLEncryptionMethodWithXts":{"href":"new-cmblencryptionmethodwithxts","monikerGroup":"f98fea35b6ac2b0f56c6ee5ec06ffce9","name":"New-CMBLEncryptionMethodWithXts","schemaType":"PowershellCmdlet","summary":"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。</p>\n","uid":"ConfigurationManager.New-CMBLEncryptionMethodWithXts"}},"description":"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。 打开 BitLocker 时会应用此策略。 如果驱动器已加密，或者加密正在进行中，则更改加密方法不起作用。</p>\n<p>对于Windows 8.1设备，请使用 <a href=\"new-cmblencryptionmethodpolicy\">New-CMBLEncryptionMethodPolicy</a> cmdlet。</p>\n","examples":[{"code":"New-CMBLEncryptionMethodPolicy -PolicyState Enabled -EncryptionMethod AES256\nNew-CMBLEncryptionMethodWithXts -PolicyState Disabled","description":"","summary":"<p>此示例创建禁用的 Windows 10 策略。 由于使用 New-CMBLEncryptionMethodPolicy cmdlet 指定的常规策略指定 AES-256，BitLocker 在所有设备上使用相同的加密方法。</p>\n","title":"示例 1：新的已禁用策略"},{"code":"New-CMBLEncryptionMethodWithXts -PolicyState Enabled -OSDriveEncryptionMethod AesCbc128 -FixedDriveEncryptionMethod AesCbc128 -RemovableDriveEncryptionMethod AesCbc128","description":"","summary":"<p>此示例创建一个已启用的策略，并在所有驱动器类型上指定 XTS-CBC 128 位加密。</p>\n","title":"示例 2：使用 XTS-CBC 128 位加密启用的新策略"}],"inputs":[{"description":"","name":"<span class=\"no-loc xref\">None</span>\n"}],"links":[{"href":"new-cmblencryptionmethodpolicy","text":"New-CMBLEncryptionMethodPolicy"},{"href":"new-cmblmsetting","text":"New-CMBlmSetting"},{"href":"/mem/configmgr/protect/tech-ref/bitlocker/settings#drive-encryption-method-and-cipher-strength","text":"BitLocker 设置参考"}],"module":"ConfigurationManager","name":"New-CMBLEncryptionMethodWithXts","notes":"","outputs":[{"description":"","name":"<span class=\"no-loc xref\">Microsoft.ConfigurationManagement.AdminConsole.BitlockerManagement.PolicyObject</span>\n"}],"parameters":[{"aliases":"","defaultValue":"None","description":"<p>此参数将通配符视为文本字符值。 不能将其与 <strong>ForceWildcardHandling</strong> 组合使用。</p>\n","name":"DisableWildcardHandling","parameterValueGroup":"","position":"Named","type":"<span class=\"no-loc xref\">SwitchParameter</span>\n"},{"aliases":"","defaultValue":"None","description":"<p>为固定数据驱动器指定加密方法。</p>\n","name":"FixedDriveEncryptionMethod","parameterValueGroup":"AesXts128, AesXts256, AesCbc128, AesCbc256","position":"Named","type":"<span class=\"no-loc xref\">WindowsTenEncryptionMethod</span>\n"},{"aliases":"","defaultValue":"None","description":"<p>此参数处理通配符，并可能导致意外行为， (不建议) 。 不能将其与 <strong>DisableWildcardHandling</strong> 组合使用。</p>\n","name":"ForceWildcardHandling","parameterValueGroup":"","position":"Named","type":"<span class=\"no-loc xref\">SwitchParameter</span>\n"},{"aliases":"","defaultValue":"None","description":"<p>为 OS 驱动器指定加密方法。</p>\n","name":"OSDriveEncryptionMethod","parameterValueGroup":"AesXts128, AesXts256, AesCbc128, AesCbc256","position":"Named","type":"<span class=\"no-loc xref\">WindowsTenEncryptionMethod</span>\n"},{"aliases":"","defaultValue":"None","description":"<p>使用此参数配置策略。</p>\n<ul>\n<li><p>\n              <code>Enabled</code>：如果启用此策略，请分别为固定数据驱动器、OS 驱动器和可移动数据驱动器配置加密算法和密钥密码强度。 对于固定驱动器和 OS 驱动器，建议使用 XTS-AES 算法。 如果要在Windows 8.1设备中使用可移动驱动器，请使用 AES-CBC 128 位或 AES-CBC 256 位。</p>\n</li>\n<li><p>\n              <code>Disabled</code> 或 <code>NotConfigured</code>：如果禁用或未配置此策略，则 BitLocker 使用与 <a href=\"new-cmblencryptionmethodpolicy\">使用 New-CMBLEncryptionMethodPolicy</a> cmdlet 指定的策略相同的位强度的 AES。 如果未启用该策略，BitLocker 将使用 XTS-AES 128 位的默认加密方法。</p>\n</li>\n</ul>\n","name":"PolicyState","parameterValueGroup":"Enabled, Disabled, NotConfigured","position":"Named","type":"<span class=\"no-loc xref\">State</span>\n"},{"aliases":"","defaultValue":"None","description":"<p>指定可移动驱动器的加密方法。</p>\n","name":"RemovableDriveEncryptionMethod","parameterValueGroup":"AesXts128, AesXts256, AesCbc128, AesCbc256","position":"Named","type":"<span class=\"no-loc xref\">WindowsTenEncryptionMethod</span>\n"}],"schema":"PowershellCmdlet","summary":"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。</p>\n","syntaxes":["New-CMBLEncryptionMethodWithXts [-PolicyState <State>] [-OSDriveEncryptionMethod <WindowsTenEncryptionMethod>]\n [-FixedDriveEncryptionMethod <WindowsTenEncryptionMethod>]\n [-RemovableDriveEncryptionMethod <WindowsTenEncryptionMethod>] [-DisableWildcardHandling]\n [-ForceWildcardHandling] [<CommonParameters>]"],"uid":"ConfigurationManager.New-CMBLEncryptionMethodWithXts","hideEdit":true,"ms.translationtype":"MT","ms.contentlocale":"zh-cn","loc_version":"2024-08-21T21:18:36.7205003Z","loc_source_id":"Github-72476255#live","loc_file_id":"Github-72476255.live.MSDN.sccm-powershell.sccm-ps/ConfigurationManager/New-CMBLEncryptionMethodWithXts.md","xrefs":[{"href":"https://learn.microsoft.com/powershell/module/configurationmanager/new-cmblencryptionmethodwithxts","monikerGroup":"f98fea35b6ac2b0f56c6ee5ec06ffce9","name":"New-CMBLEncryptionMethodWithXts","schemaType":"PowershellCmdlet","summary":"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。</p>\n","uid":"ConfigurationManager.New-CMBLEncryptionMethodWithXts"}],"canonical_url":"https://learn.microsoft.com/zh-cn/powershell/module/configurationmanager/new-cmblencryptionmethodwithxts?view=sccm-ps","_op_canonicalUrl":"https://learn.microsoft.com/zh-cn/powershell/module/configurationmanager/new-cmblencryptionmethodwithxts?view=sccm-ps"},"pageMetadata":"<meta name=\"description\" content=\"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。 打开 BitLocker 时会应用此策略。 如果驱动器已加密，或者加密正在进行中，则更改加密方法不起作用。</p>\n<p>对于Windows 8.1设备，请使用 <a href=&quot;new-cmblencryptionmethodpolicy&quot;>New-CMBLEncryptionMethodPolicy</a> cmdlet。</p>\n\" />\r\n<meta name=\"hideEdit\" content=\"true\" />\r\n<meta name=\"loc_file_id\" content=\"Github-72476255.live.MSDN.sccm-powershell.sccm-ps/ConfigurationManager/New-CMBLEncryptionMethodWithXts.md\" />\r\n<meta name=\"loc_source_id\" content=\"Github-72476255#live\" />\r\n<meta name=\"loc_version\" content=\"2024-08-21T21:18:36.7205003Z\" />\r\n<meta name=\"module\" content=\"ConfigurationManager\" />\r\n<meta name=\"ms.contentlocale\" content=\"zh-cn\" />\r\n<meta name=\"ms.translationtype\" content=\"MT\" />\r\n<meta name=\"name\" content=\"New-CMBLEncryptionMethodWithXts\" />\r\n<meta name=\"notes\" content=\"\" />\r\n<meta name=\"schema\" content=\"PowershellCmdlet\" />\r\n<meta name=\"summary\" content=\"<p>创建策略以配置 Windows 10 设备上的 BitLocker 驱动器加密使用的算法和密码强度。</p>\n\" />\r\n<meta name=\"syntaxes\" content=\"New-CMBLEncryptionMethodWithXts [-PolicyState <State>] [-OSDriveEncryptionMethod <WindowsTenEncryptionMethod>]\n [-FixedDriveEncryptionMethod <WindowsTenEncryptionMethod>]\n [-RemovableDriveEncryptionMethod <WindowsTenEncryptionMethod>] [-DisableWildcardHandling]\n [-ForceWildcardHandling] [<CommonParameters>]\" />\r\n<meta name=\"uid\" content=\"ConfigurationManager.New-CMBLEncryptionMethodWithXts\" />\r\n","themesRelativePathToOutputRoot":"_themes/"}