E
Eric Skibicki
Hello All,
I have a couple win2k3 servers up, both are domain controllers in a the
same forest (sc), and one of them (debbie) is running a certificate
authority (enterprise root). When I encrypt a file on a workstation, the
CA generates an EFS key, and uses that key on the local workstation.
The problem comes in when I try to encrypt a file on the other domain
controller via a mapped drive from the workstation. The user all of a
sudden generates a new key with himself as the issuer, and encrypts the file
that way.
Wanting to test something, I wrote a program that uses
AddUsersToEncryptedFile and EncryptFile to encrypt a file and add my test
user's AD/CA EFS key to that file. This was all done on the domain
controller that is hosting the share. When my test user attempts to open
that file (mind you it does have his CA EFS key attached (i can view the
properties, it is correct)) it gives an access denied....
Any ideas what is causing this behaviour?
Eric
I have a couple win2k3 servers up, both are domain controllers in a the
same forest (sc), and one of them (debbie) is running a certificate
authority (enterprise root). When I encrypt a file on a workstation, the
CA generates an EFS key, and uses that key on the local workstation.
The problem comes in when I try to encrypt a file on the other domain
controller via a mapped drive from the workstation. The user all of a
sudden generates a new key with himself as the issuer, and encrypts the file
that way.
Wanting to test something, I wrote a program that uses
AddUsersToEncryptedFile and EncryptFile to encrypt a file and add my test
user's AD/CA EFS key to that file. This was all done on the domain
controller that is hosting the share. When my test user attempts to open
that file (mind you it does have his CA EFS key attached (i can view the
properties, it is correct)) it gives an access denied....
Any ideas what is causing this behaviour?
Eric