Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Recovering encrypted files on EFS

Status
Not open for further replies.

Tels

IS-IT--Management
Jul 10, 2001
290
GB
HI. I have a Win2K server, with files randomly encrypted all over the drive - most shouldn't be encrypted, but logging in as other users to decrypt them isn't an option, for various reasons.

1) How do I decrypt these files?

I think it has something to do with a recovery certificate - which I have, generated and stored on my pc.

Pls help - there isn't much help for this on the web
Win2000 Network Administrator
 
Don't know why you said there isn't much information on this? I can see tons of info on this subject on

Search for "EFS" and then "DECRYPT FILE"...


Recovering Encrypted Files:


Recovering Encrypted Files:
Joseph L. Poandl
MCSE 2000

If your company is in need of experts to examine technical problems/solutions, please check out
 
Brilliant. I didn't find any of this before (I had this problem a long time ago - same story)
Next time I'll rtfm.....

:) Thanks v much
I'll let you know how I go tomorrow.

Tels Win2000 Network Administrator
 
Explanation here is a little cryptic and not very specific, I have generated a File Recovery key from the domain CA, imported and installed it, but cannot decrypt the file. I guess I'm missing something. What I was looking for was more of a step by step Win2000 guide - doesn't have to be too detailed, just the important points.

Thanks in advance... Win2000 Network Administrator
 
In AD Users and Computers I have selected the highest GPO container, and added myself as a recovery agent in policy settings and I can now view a certificate listed in my name.
If I export this certificate and install it on my local machine, will I then be able to recover files encrypted by other users, also, will it be limited to files encrypted after I designated myself as a recovery agent?
Is there any specific instruction for applying a certificate to decrypt a file, or will windows automatically use the correct certificate when I uncheck 'encryption'?

Thanks for your help so far

Tels Win2000 Network Administrator
 
Well I just tried. I installed the certificate, encrypted a file with another users terminal, and tried to decrypt it myself. I have a feeling I may be well off the track here....

How do I make sure I am exporting both private and public parts of the key, or do I have to request a new certificate from the CA?

I feel a bit helpless now....

Cheers
Tels Win2000 Network Administrator
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top