Hi all,
I have HP server with Win2000 domain controller and 10 clients, my problem
is one of these clients has encrypted files (large document, mail, photo) in
all the suden the DC crashed (SW issue) so i did a new installation for DC
and ISA and Exchange in other directory...But still I can't access the
encrypted files
How to solve such problem???

RE: Cannot open encrypted files by BrianCohen

BrianCohen
Mon Jan 31 13:03:05 CST 2005

Take a look a this...

http://www.microsoft.com/resources/documentation/Windows/XP/all/reskit/en-us/Default.asp?url=/resources/documentation/Windows/XP/all/reskit/en-us/prnb_efs_kavz.asp

You will need a copy of the users recovery key.

Hope that helps...

Brian

"MCage" wrote:

> Hi all,
> I have HP server with Win2000 domain controller and 10 clients, my problem
> is one of these clients has encrypted files (large document, mail, photo) in
> all the suden the DC crashed (SW issue) so i did a new installation for DC
> and ISA and Exchange in other directory...But still I can't access the
> encrypted files
> How to solve such problem???

Re: Cannot open encrypted files by Shreeniwas

Shreeniwas
Mon Jan 31 15:44:12 CST 2005

If you can still log on to the machine with the account that encrypted the
files, they will most likely be recoverable.

Else you can either use the user's backed up EFS keys or the domain recovery
agent keys (these should be backed up as well) to recover the data.

--
Shreeniwas Kelkar [MSFT]

This posting is provided "AS IS" with no warranties, and confers no rights.


"MCage" <MCage@discussions.microsoft.com> wrote in message
news:D2DC785B-2011-48D4-935C-E1D4D140719E@microsoft.com...
> Hi all,
> I have HP server with Win2000 domain controller and 10 clients, my problem
> is one of these clients has encrypted files (large document, mail, photo)
> in
> all the suden the DC crashed (SW issue) so i did a new installation for DC
> and ISA and Exchange in other directory...But still I can't access the
> encrypted files
> How to solve such problem???



Re: Cannot open encrypted files by Roger

Roger
Tue Feb 01 01:00:17 CST 2005

So all of the following are true?
- you did a new install of AD, not using an authoritative
restore of the earlier AD
- you did not export and preserve the EFS default recovery
agent certificate and key from the inital AD installation
- the encrypting account did not have its EFS certificate
and key exported and preserved
If all are true you may have a hard time getting the files
back in unencrypted form.

--
Roger Abell
Microsoft MVP (Windows Security)
MCSE (W2k3,W2k,Nt4) MCDBA
"MCage" <MCage@discussions.microsoft.com> wrote in message
news:D2DC785B-2011-48D4-935C-E1D4D140719E@microsoft.com...
> Hi all,
> I have HP server with Win2000 domain controller and 10 clients, my problem
> is one of these clients has encrypted files (large document, mail, photo)
in
> all the suden the DC crashed (SW issue) so i did a new installation for DC
> and ISA and Exchange in other directory...But still I can't access the
> encrypted files
> How to solve such problem???