Re: Re: Re: EFS Issue

From: Mouse4440 (DoNotEmail_at_WindowsForumz.com)
Date: 04/29/05


Date: 29 Apr 2005 11:24:52 -0500


"kerry15" wrote:
> "Mouse4440" <DoNotEmail@WindowsForumz.com> wrote in message
> news:3_1183971_590abcb1375a568d59e74bf288c16868@windowsforumz.com...
> > "Jupiter Jones MVP" wrote:
> &nbsp;> > Was there a Designated Recovery Agent on the domain?
> &nbsp;> > If not, the data is most likely gone for good.
> &nbsp;> >
> &nbsp;> > See the bottom of this page for ways to help prevent
> data loss
> &nbsp;> > with EFS in
> &nbsp;> > the future:
> &nbsp;> > http://www3.telus.net/dandemar/encrypt.htm
> &nbsp;> >
> &nbsp;> > --
> &nbsp;> > Jupiter Jones [MVP]
> &nbsp;> > http://www3.telus.net/dandemar
> &nbsp;> > In memory of our dear friend, MVP Alex Nichol
> &nbsp;> > http://www.dts-l.org
> &nbsp;> >
> &nbsp;> >
> &nbsp;> > "Mouse4440" &lt;UseLinkToEmail@WindowsForumz.com&gt;
> wrote in
> &nbsp;> > message
> &nbsp;> >
> news:3_1177687_c7f35c781fba764475392afee945baeb@windowsforumz.com...
> &nbsp;&nbsp;> > > Recently I used RIS (Remote Installation
> Service) to
> &nbsp;> > reinstall a
> &nbsp;&nbsp;> > > clients workstation because it had been
> upgraded and had
> &nbsp;> > different
> &nbsp;&nbsp;> > > versions of Office installed and just
> generally had issues,
> &nbsp;> > but what I
> &nbsp;&nbsp;> > > didn't know is that the user had Encrypted
> files on another
> &nbsp;> > drive (USB
> &nbsp;&nbsp;> > > External Hard Drive) so after I reinstalled
> the OS the
> &nbsp;> > Computer
> &nbsp;&nbsp;> > > account is not the same as before and he can
> no longer
> &nbsp;> > access the
> &nbsp;&nbsp;> > > files that were on the other drive. I have
> tried several of
> &nbsp;> > the free
> &nbsp;&nbsp;> > > downloadable recovery packages Advanced EFS
> recovery and
> &nbsp;> > others but
> &nbsp;&nbsp;> > > have had no luck, the recovery agent
> displays that no user
> &nbsp;> > is able to
> &nbsp;&nbsp;> > > decrypt the files and the user account has
> not changed
> &nbsp;> > because the
> &nbsp;&nbsp;> > > user is in a domain. I have tried logging in
> as local admin,
> &nbsp;> > domain
> &nbsp;&nbsp;> > > admin, but still no luck. anyone know of
> anything I can do.
> &nbsp;> > and no
> &nbsp;&nbsp;> > > the user didn't export the keys.
> &nbsp;&nbsp;> > >
> &nbsp;&nbsp;> > > --
> &nbsp;&nbsp;> > > Posted using the
> http://www.windowsforumz.com interface, at author's
> &nbsp;&nbsp;> > > request
> &nbsp;&nbsp;> > > Articles individually checked for
> conformance to usenet
> &nbsp;> > standards
> &nbsp;&nbsp;> > > Topic URL:
> &nbsp;&nbsp;> > >
> http://www.windowsforumz.com/Security-Admin-EFS-Issue-ftopict365344.html
> &nbsp;&nbsp;> > > Visit Topic URL to contact author (reg.
> req'd). Report
> &nbsp;> > abuse:
> &nbsp;&nbsp;> > >
> http://www.windowsforumz.com/eform.php?p=1177687
> >
> > I’m not sure, I logged in as admin on the local machine and
> as the
> > domain admin and the windows recovery thing display no
> recovery agent
> > present. is this something that user had to setup or is an
> automatic
> > thing?
> >
>
> With XP you have to setup the recovery agent. Win2k worked
> differently. If
> he was logged on locally when he encrypted the files you are
> probably out of
> luck. If he was logged on as a domain user you will have to
> figure out if
> there is a recovery agent and who it is. Export the recovery
> key and import
> it on the machine with the files on it. You may also have to
> take ownership
> of the files on the USB drive first.
>
> http://support.microsoft.com/default.aspx?scid=kb;en-us;887414
>
> http://www.microsoft.com/resources/documentation/Windows/XP/all/reskit/en-us/Default.asp?url=/resources/documentation/windows/xp/all/reskit/en-us/prnb_efs_lnfx.asp
>
> Kerry

He was a domain user but the key was on the system partition and the
data is on another drive, the system partition that had the keys was
deleted with the install of Win XP. I logged in as the user and the
recovery agent displays no recovery agent present, likewise for the
local admin and domain admin. I have not taken ownership though.
would I need to do that for the recovery agent.



Relevant Pages

  • Re: Re: EFS Issue
    ... >> Was there a Designated Recovery Agent on the domain? ... I logged in as admin on the local machine and as the ... With XP you have to setup the recovery agent. ... If he was logged on as a domain user you will have to figure out if ...
    (microsoft.public.windowsxp.security_admin)
  • Re: UNEncryped files
    ... Also, for XP Pro in a non-Domain environment, the "local admin" is not ... automatically designated a "recovery agent" (which was true un Win2k Pro), ... >> encrypted is thire any way to axcess them. ...
    (microsoft.public.windowsxp.security_admin)
  • EFS
    ... I encrypted a file while the laptop was on ... so I assume local admin was the Recovery Agent. ... migrated to Active directory, which I guess makes Domain Admin the ...
    (microsoft.public.win2000.security)
  • Re: EFS Issue
    ... Was there a Designated Recovery Agent on the domain? ... I have tried logging in as local admin, ... > admin, but still no luck. ... > Visit Topic URL to contact author (reg. ...
    (microsoft.public.windowsxp.security_admin)
  • EFS on XP
    ... to create a DRA for a XP pro box in AD, ... Comming from a 2000 enviroment where local admin was ... able to make the make the XP admin the recovery agent. ...
    (microsoft.public.windowsxp.security_admin)