Re: Can files encrypted by XP under NTFS system be restore?

From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 02/25/04


Date: Wed, 25 Feb 2004 04:20:26 -0700


"K.G." <yexam@msn.com> wrote in message
news:10a401c3fb83$9c3bacf0$a501280a@phx.gbl...
> If I forgot to backup the cretificate, and XP crashed,
> after I reinstall windows xp, can I re-open those
> encrypted files?

No
You need one of :
1. bootable system where files were encrypted, and
    ability to log in with encrypting account without
    resetting its password (ie. restore from full backup)
2. exported cert/key from prior system and password
    used to secure the export pfx file
3. complete unaltered backup of profile of account of
    the old system and password of that account, plus
    either time and skill or money for third-party or to
    have MS support use reccerts for you.
4. exported cert/key from a DRA you configured before
    the files were encryped
5. access to a domain level DRA if the machine was a
    member of an up-level domain when the files were
    encrypted with a domain account.

If none of these are available to you then your files are gone.

-- 
Roger Abell
Microsoft MVP (Windows Server System: Security)
MCSE (W2k3,W2k,Nt4)  MCDBA


Relevant Pages

  • Re: De encrypted files in windows Xp
    ... but i have the original backup ... profle for my account, i have domain. ... have an intact copy of the encrypting account's (the ...
    (microsoft.public.win2000.security)
  • Re: User authentication
    ... I have to maintain separate account management. ... If I use Windows backup ... However, if possible, I would like to use Windows authentication as opposed ...
    (microsoft.public.sqlserver.clients)
  • Re: Changed Name & Lost Access
    ... where xxxyyyzzz is the new password for the thomas account. ... internal disk protects you against about 30% of the usual ... backup system is one that has the backup medium kept ...
    (microsoft.public.win2000.general)
  • Re: Removing old transaction log backup files
    ... This is likely to be either a permissions problem or a sharing violation ... account is the security context for jobs, ... delete an expired backup. ... SQLServerAgent startup account is LocalSystem, ...
    (microsoft.public.sqlserver.server)
  • Re: Maintenance Plan: Delete old files not working right
    ... This is likely to be either a permissions problem or a sharing violation ... Determine the startup account for the SQLServerAgent service ... account is the security context for jobs, ... delete an expired backup. ...
    (microsoft.public.sqlserver.server)

Quantcast