---
title: "Connecting BitLocker to the SysAid AI Agent Builder"
slug: "connecting-bitlocker-to-the-sysaid-ai-agent-builder"
updated: 2025-12-17T08:44:55Z
published: 2025-12-17T08:44:55Z
canonical: "documentation.sysaid.com/connecting-bitlocker-to-the-sysaid-ai-agent-builder"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://documentation.sysaid.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Connecting BitLocker to the SysAid AI Agent Builder

The SysAid AI Agent Builder empowers you to connect with Microsoft BitLocker and streamline device security management. With the BitLocker AI Connection, you can easily list recovery keys and retrieve specific recovery keys by ID.

Whether using prebuilt AI Agents or creating your own, you can simplify access to critical encryption information and support your IT security processes more efficiently.

In this article, we’ll walk you through the process of connecting the AI Agent Builder with Microsoft BitLocker.

## Setting up the connection

Follow these steps to set up and connect your SysAid AI Agent Builder with BitLocker.

#### **Step 1: Open the Microsoft Entra ID Graph API AI Connection**

1. In your SysAid account, go to **Settings** > **SysAid** **AI Agents**> **AI Agents Builder**.
2. Search and select the **BitLocker API Connection** AI Connection in the menu to the left.
3. You’ll see 3 fields to fill in: **Tenant ID**, **Client ID**, and **Client Secret**.

We’ll walk you through finding these details and adding them to the AI Agent Builder to connect it to the Microsoft Graph API.

Keep your SysAid account open in one tab and open a new tab to connect to your [Azure portal](https://portal.azure.com/).

#### **Step 2: Add the Tenant ID**

1. Log in to [Azure](https://portal.azure.com/) and navigate to **Azure Services**.
2. Select **Microsoft Entra ID**.
3. In the **Overview** section, copy the **Tenant ID**.
4. Back in SysAid, paste the copied ID into the **Tenant ID** field within the AI Connection.

![](https://cdn.document360.io/52d3cb6c-cc81-43c2-b6f7-cbabcb449271/Images/Documentation/connecting-bitlocker-to-the-sysaid-ai-agent-builder-image-ia8pf912.png)

#### **Step 3: Generate the Client ID**

1. In Azure, go to **Manage**>**App Registrations**.
2. Click **+ New Registration**.
3. Enter a name for your application, for example, "SysAid AI Agent Builder - BitLocker" ![](https://cdn.document360.io/52d3cb6c-cc81-43c2-b6f7-cbabcb449271/Images/Documentation/connecting-bitlocker-to-the-sysaid-ai-agent-builder-image-gt8tr2pm.png)
4. Keep the default settings and click **Register**.
5. Scroll down to **API Permissions** and click **+ Add a permission**>**Microsoft Graph**>**Application permissions**.
6. Add the following permission from the **Application Permissions** section:
  - **Application Permissions**: `BitlockerKey.Read.All`
  - **Application**: `Directory.Read.All`
  - **Application**: `Organization.Read.All`

> [!WARNING]
> Please note:
> 
> We recommend providing SysAid with the higher privileged permissions to create more comprehensive AI Agents, however, you can choose to use the least privileged *BitlockerKey.ReadBasic.All* permissions.
7. Click **Add Permission**.
8. Select **Grant admin consent for SysAid** to finalize permissions.
9. Return to the **App Registration** section and select the newly created application.
10. Copy the **Application (Client) ID** from the Overview section.
11. Back in SysAid, paste this ID into the **Client ID** field.

#### **Step 4: Create a Secret Key**

1. In Azure, go to **Manage**>**App Registration** and select the newly created application.
2. Go to **Certificates & Secrets** under the Manage menu.
3. Click **+ New Client Secret**.
4. Add a description and select an expiration date for the secret.
5. Click **Add** to generate the key.
6. Copy the **Secret Value** (displayed only once).
7. Back in SysAid, paste the value into the "Client Secret" field.

![](https://cdn.document360.io/52d3cb6c-cc81-43c2-b6f7-cbabcb449271/Images/Documentation/connecting-bitlocker-to-the-sysaid-ai-agent-builder-image-h981oeaa.png)

#### **Step 5: Test the Connection**

Once the Tenant ID, Client ID, and Client secret are set:

1. Click on **Test**in the AI Agent Builder.
2. Wait for confirmation that the test was successful.
3. Click **Publish**.

You are now ready to leverage the SysAid AI Builder’s capabilities to automate workflows and enhance productivity.

> [!WARNING]
> Please note:
> 
> If the test fails, please recheck the details and try again. If the issue persists, [contact support](https://helpdesk.sysaid.com/servicePortal/submitIncident).

# Next steps

You can now use the prebuilt AI Agents. To view all available prebuilt AI Agents, see [Prebuilt AI Agents Overview](https://documentation.sysaid.com/docs/prebuilt-ai-agents-overview#entra-azure-ad-ai-agents).

You can also create your own AI Agent from scratch using the [AI Agent Builder](https://documentation.sysaid.com/docs/ai-agent-builder-guide). To learn which API capabilities are available for BitLocker, go to [Microsoft Learn](https://learn.microsoft.com/en-us/graph/api/resources/bitlockerrecoverykey?view=graph-rest-1.0).
