MBAM: Clients cannot report to MBAM server

Microsoft Bitlocker Management and Administration server is installed in a single server configuration. Test machine is encrypted, but never reported its state back to the server.

It turned out you need to add a ‘MBAM’ registry key to MBAM server under HKEY_LOCAL_MACHINE\Software\Microsoft

as soon as the key as created, add a DWORD settings with name DisableMachineVerification and set it to 1 

Restart mbamagent on a client machine and now report should pass.

Interesting enough – this ‘feature’ exists since v.1 of MBAM and is still around!

MS has a KB about that