problem with EFS on a domain client computer

D

David

Hi,


I was testing the EFS feature in XP SP2 and I have a problem recovering a
few files.

Here's the setup: Windows 2003 domain (1DC), WinXP SP2 clients.

If a user on an XP SP2 client encrypts files on a shared folder on the DC,
the domain admin can access the file and thus if ever necessary recover the
file if the user account gets deleted.
If the same user encrypts files on his local computer, neither the domain or
local admin can access those files.

Am I doing something wrong or is this by design?


regards,


David
 
F

Frank Szita [MSFT]

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top