Sharing EFS folder with second account
I am working through an EFS project/evaluation. I have succesfully encrypted the data, and delegated the host computer account so I can access it remotely. That is working well.
Ive read you can share the certificate of the account that encrypted the data with another account and that would allow the second account to access the files. Its not working.
The two certificates published in AD are the same, the primary and secondary account. However, I cannot access the data locally or remotely.
Is there no way to share an EFS encrypted folder?
I may just have a hard time accepting EFS limitations. The tech was clearly devloped for single user encryption of my documents and such. Unfortunately, microsoft does not have a solution for End-to-End encryption in an enterprise environment.
June 13th, 2012 11:43am
Hi,
Have you check the previous reply as we discuss about EFS in the following thread? Please following the step by step guide to sharing encrypted files.
http://social.technet.microsoft.com/Forums/en-US/winserversecurity/thread/81cf01ca-84f2-4b29-8c79-a4cdbd855429/#c9cd0300-c610-45fa-8551-86080e02fb0a
Best Regards,
AidenAiden Cao
TechNet Community Support
Free Windows Admin Tool Kit Click here and download it now
June 14th, 2012 12:49am
I exported the certificate (issued by the CA) and imported it into another account and that other cannot could not get access. I want to give access to all files/folders in an encrypted folder to multiple users. I know the folder isnt encrypted, its the
files in it.
June 14th, 2012 10:44am
Hi,
Please take a look at the guide, it has more detailed steps. Thanks. You need to make sure the second user also has an EFS certificate issued by the same CA. Then, perform the following steps:
1. Select the Properties of the file (not the folder), select
Advanced.
2. Check the Details button.
3. Add the user under the tab Users who can access this file.
For more detailed steps about this procedure, please refer to the following Technet article. Hope it helps. If you have any update or concern, please feel free to let me know.
How to Share Files Using Encrypting File System
http://technet.microsoft.com/en-us/library/bb457007.aspx
Best Regards,
AidenAiden Cao
TechNet Community Support
Free Windows Admin Tool Kit Click here and download it now
June 14th, 2012 9:49pm
Hi,
Please take a look at the guide, it has more detailed steps. Thanks. You need to make sure the second user also has an EFS certificate issued by the same CA. Then, perform the following steps:
1. Select the Properties of the file (not the folder), select
Advanced.
2. Check the Details button.
3. Add the user under the tab Users who can access this file.
For more detailed steps about this procedure, please refer to the following Technet article. Hope it helps. If you have any update or concern, please feel free to let me know.
How to Share Files Using Encrypting File System
http://technet.microsoft.com/en-us/library/bb457007.aspx
Best Regards,
AidenAiden Cao
TechNet Community Support
June 14th, 2012 9:50pm
I want to share or mimic sharing at the folder level. Sharing at the file leve is easy.
I dont think you can "share" at the folder level in EFS.
Free Windows Admin Tool Kit Click here and download it now
June 15th, 2012 10:19am
I want to share or mimic sharing at the folder level. Sharing at the file leve is easy.
I dont think you can "share" at the folder level in EFS.
June 15th, 2012 10:21am