EFS Certificates in AD 2003



I have an Enterprise 2003 CA that is issuing Basic EFS certificates. When I
encrypt a file on a local computer running XP, the file is encrypted with the
Basic EFS certificate that was issued by the CA.

Here is my problem. When I encrypt a file on a different server from my XP
machine, the server encrypts the file with a user signed certificate. It is
not using the Basic EFS certificate from my machine. The certificate was
auto generated by the remote server since I had never encrypted a file on the
server before.

What is going on? I have looked through the registry of the remote server
and I cannot find the certificate that is assigned to my machine so I don't
know how to remove it.
.



Relevant Pages

  • Re: A cryptography solution for a client/server winforms app
    ... good idea if you want to learn crypto. ... you control both the client and server, you don't even need to use a ... code the client to ignore certificate trust errors. ... encrypt the memory stream. ...
    (microsoft.public.dotnet.security)
  • Re: EFS question
    ... > private key etc and then reading the file from a different location. ... When you encrypt files on a file share, ... actually takes place on the remote server. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: A cryptography solution for a client/server winforms app
    ... You could use a self-signed cert deployed with the server ... code the client to ignore certificate trust errors. ... generate a hash value for the data in the memory stream. ... encrypt the memory stream. ...
    (microsoft.public.dotnet.security)
  • Re: Encrypted files do they work for backups?
    ... I'm going to test it out myself on my own test SBS Server. ... >>If I use the administrator account, and I encrypt it EFS on a External ... >>> format you need the private key to decrypt the files ... do you have the recovery agent Encrypting File ...
    (microsoft.public.windows.server.sbs)
  • Re: Cannot decrypt about 5% of encrypted files
    ... But when I try to decrypt them, ... It doesn't matter how I log into the server; ... copied to a cluster server that had a file share resource. ... When you encrypt on a server, ...
    (microsoft.public.security)