Re: Decrypt an EFS folder

From: Robert Gu [MS] (robertg@online.microsoft.com)
Date: 06/25/02


From: "Robert Gu [MS]" <robertg@online.microsoft.com>
Date: Mon, 24 Jun 2002 16:25:17 -0700


You should have a DC EFS recovery policy, right?

Use EFSINFO (available on RES KIT) with the line EFSINFO /R /C filename. It
will tell you the recovery cert thumbprint used for the file. Then find the
corresponding recovery cert+keys to recover it. You can also use XP
Shell->Property->Advanced->Details to find the recovery cert thumbprint.

For more detailed instruction how to use the recovery agent, you can read
start->help and search EFS.

You can also read EFS white paper,
http://www.microsoft.com/windowsxp/pro/techinfo/administration/recovery/defa
ult.asp

--
This posting is provided "AS IS" with no warranties, and confers no rights.
Robert Gu [MS Security Developer]
"MS" <smd6169@hotmail.com> wrote in message
news:uIhIuJ8GCHA.2904@tkmsftngp12...
> I have a user who encrypted a folder on his local drive.  Due to unrelated
> cirumstances, we had to delete his profile.  Now he can not access those
> files.  The client pc is XP pro and it is attached to a 2000 domain.
>
> How do I decrypt those files?
>
> Thanks,
> Sean
>
>
>
>


Relevant Pages

  • Re: Have key(s) for EFS files, still denied
    ... Hopefully the data recovery company can get the key. ... EFS files from your description. ... In the fall of 2004 we bought a new Dell laptop and I moved/copied EFS ... In October 2005 I reformatted our Gateway C partition and re-installed XP. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Corrupted Admin Profile
    ... > My view on EFS: ... > Do not to use encryption unless you are in a domain and you know ... as well not having created a Recovery Agent (with backup of the ... > Q241201 How to Back Up Your Encrypting File System Private Key ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Replace Domain Controller
    ... Depending on your EFS recovery you may also want to backup your EFS private ... Export your Private Key from Recovery Agent ... private key so that you can recover encrypted data in the event that you ...
    (microsoft.public.windows.server.active_directory)
  • Re: cant decrypt EFS encrypted files
    ... There is a myth on the net that doing just that will decrypt the data. ... If it were that simple EFS would be worthless. ... >> Contact Microsoft if you can restore the profile. ... >>> this I soon discovered that is possible to create Recovery Agent ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Corrupted Admin Profile
    ... > My view on EFS: ... > Do not to use encryption unless you are in a domain and you know ... as well not having created a Recovery Agent (with backup of the ... > Q241201 How to Back Up Your Encrypting File System Private Key ...
    (microsoft.public.windowsxp.security_admin)