|
Posted by Brian Komar [MVP] on October 6, 2006, 5:11 pm
If you were Registered and logged in, you could reply and use other advanced thread options
JX@discussions.microsoft.com
says...
> Hi all,
>
> I am in a midst of a small migration. We have w2k deployed and PKI. Uers
> are using certs for EFS. I know migrating these uses to new w2k3 forest will
> break the EFS encryption, but i wanted to know if users can still use their
> certificate in the local store to decrypt the files / folders etc after they
> move to the new w2k3 forest.
>
> thanks all,
> Jason
>
It would be best to look at the ADMT, I believe that it has methods for
migrating the
certificates. Alternatively, look at exporting the EFS certificates to a PKCS#12
and then
reimporting them to the new user profiles.
The key is getting the certificates into the new user profiles so taht the user
can open the
previously encrypted files.
Brian
|