Recovery agent woes

  • Thread starter Thread starter Allan Ackerman
  • Start date Start date
A

Allan Ackerman

I have a domain policy that sets the domain administrator
as the recovery agent. I have a windows 2000 Domain
controller with all workstations running XP pro. I
encrypt a folder on a workstation and then back it up and
restore it on the Domain controller were my DRA private
key is. When I had an all 2000 network I could decrypt
the restored folder. Now that I have XP it still stays
encyrpted. But get this if I copy my recovery agent's
private key certificate and import that on the station
where the encrypted folder is -- I can then recover the
data. Anyone no what is going on here??

Thanks
Allan
 
Win2k doesn't "understand" the symmetric encryption algorithm used on WinXP.
If you export your recovery certificate and key then import them on an XP
machine you should be able to decrypt the files.
 
Back
Top