2003 Server EFS - Certificate for Network Users Question


hi, have encrypted folder, shared on 2003 svr part of simple domain.
it's working fine, other users, we're trying use network shared folder.

i understand need add users' certificates individual, encrypted files' permissions allow them access, possible export certs/keys of single authorized user rest of users' machines allow them access?

i've seen asked before, replies directs user best practices doc. i'd know if it's possible, , how it.

another related question:
if have stand-alone machine, not part of domain, , needs access encrypted, shared folder - should create self-signed cert user (\\machinename\username) on machine , import server housing encrypted folder , grant user permission on indiv. encrypted files, correct?

same question before, there way import certificate (belonging existing authorized user) on user's computer allow him access encrypted share?

thanks in advance!

 hi,

 
default, members of domain admins , domain users security groups have enroll permission basic efs certificates , user certificates. default, members of domain admins , enterprise admins security groups have enroll permission administrator certificates.


details:


delivering efs certificates users
http://technet.microsoft.com/en-us/library/bb457116.aspx#egaa


please read following article reference:


how users authorized access encrypted files
http://technet.microsoft.com/en-us/library/bb457116.aspx#efaa


hope helps!


best regards
elytis cheng


elytis cheng

technet community support



Windows Server  >  Security



Comments

Popular posts from this blog

Group Policy Event ID 1058 Error Code 1326 (The user name or password is incorrect)

Suspicious event log Event ID: 4905

DCOM received error "2147746132" from...