using EFS & WebDAV with multiple users

  • Thread starter Thread starter cujam
  • Start date Start date
C

cujam

The following problem occured to me, when I tried to use
EFS in combination with WebDAV:

Environment:
------------
LAN network with Windows 2003 Servers (DC, CA-Services for
certificates, IIS 6.0 for WebDAV access).

Situation:
----------
I created a Web-DAV-folder (which works realy fine) and
put in a dokument, accessible by the group "authenticated
users". Then I got on a client machiene, loged in with a
user and encrypted the file. After this, I added 2 more
users (or better their certificates) to the file, so that
they are able to access and decrypt the encrypted file
(file -> properties -> general tab -> advanced option -
Then I loged on to a different machine with a different
user (one of those users, who's certificate was added to
the file before), accessed the file, changed it and safed
it.
When doing so, all users are deleted from the list of
users who are allowed to access/decrypt the file. => No
one can access/decrypt it, but the one who did the
last "safe" of the file.

Is there anybody who can tell me, if this is a bug or a
feature or what have I done wrong, to avoid this problem
i.e. that the user once added to the decryption list stay
in that list.

Workaround (which is inacceptable for me):
 
are you using an older version of Office such as Office 2000? some
applications when saving files actually duplicate the file and lose the $EFS
metadata.
 
due to your commend I checked a few things and something
realy interesting happend:

I installed Office 2003 and with none of the programmes it
was possible to decrypt the file or do some kind of real
working.
But when I used the good old paint (mspaint) program,
everything worked just absolutely fine (encryption and
decryption with multiple users).
Any known issues with Office 2003 and WebDAV / EFS ?

rgds,
cujam
-----Original Message-----
are you using an older version of Office such as Office 2000? some
applications when saving files actually duplicate the file and lose the $EFS
metadata.

--


David B. Cross [MS]

--
This posting is provided "AS IS" with no warranties, and confers no rights.

http://support.microsoft.com

The following problem occured to me, when I tried to use
EFS in combination with WebDAV:

Environment:
------------
LAN network with Windows 2003 Servers (DC, CA-Services for
certificates, IIS 6.0 for WebDAV access).

Situation:
----------
I created a Web-DAV-folder (which works realy fine) and
put in a dokument, accessible by the group "authenticated
users". Then I got on a client machiene, loged in with a
user and encrypted the file. After this, I added 2 more
users (or better their certificates) to the file, so that
they are able to access and decrypt the encrypted file
(file -> properties -> general tab -> advanced option -
Then I loged on to a different machine with a different
user (one of those users, who's certificate was added to
the file before), accessed the file, changed it and safed
it.
When doing so, all users are deleted from the list of
users who are allowed to access/decrypt the file. => No
one can access/decrypt it, but the one who did the
last "safe" of the file.

Is there anybody who can tell me, if this is a bug or a
feature or what have I done wrong, to avoid this problem
i.e. that the user once added to the decryption list stay
in that list.

Workaround (which is inacceptable for me):


.
 
what error did you receive?

--


David B. Cross [MS]

--
This posting is provided "AS IS" with no warranties, and confers no rights.

http://support.microsoft.com

cujam said:
due to your commend I checked a few things and something
realy interesting happend:

I installed Office 2003 and with none of the programmes it
was possible to decrypt the file or do some kind of real
working.
But when I used the good old paint (mspaint) program,
everything worked just absolutely fine (encryption and
decryption with multiple users).
Any known issues with Office 2003 and WebDAV / EFS ?

rgds,
cujam
-----Original Message-----
are you using an older version of Office such as Office 2000? some
applications when saving files actually duplicate the file and lose the $EFS
metadata.

--


David B. Cross [MS]

--
This posting is provided "AS IS" with no warranties, and confers no rights.

http://support.microsoft.com

The following problem occured to me, when I tried to use
EFS in combination with WebDAV:

Environment:
------------
LAN network with Windows 2003 Servers (DC, CA-Services for
certificates, IIS 6.0 for WebDAV access).

Situation:
----------
I created a Web-DAV-folder (which works realy fine) and
put in a dokument, accessible by the group "authenticated
users". Then I got on a client machiene, loged in with a
user and encrypted the file. After this, I added 2 more
users (or better their certificates) to the file, so that
they are able to access and decrypt the encrypted file
(file -> properties -> general tab -> advanced option -
...).
Then I loged on to a different machine with a different
user (one of those users, who's certificate was added to
the file before), accessed the file, changed it and safed
it.
When doing so, all users are deleted from the list of
users who are allowed to access/decrypt the file. => No
one can access/decrypt it, but the one who did the
last "safe" of the file.

Is there anybody who can tell me, if this is a bug or a
feature or what have I done wrong, to avoid this problem
i.e. that the user once added to the decryption list stay
in that list.

Workaround (which is inacceptable for me):


.
 
Back
Top