General EFS Question

General EFS Question

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
General EFS Question Paul 11-17-2006
Posted by =?Utf-8?B?UGF1bA==?= on November 17, 2006, 10:16 am
If you were  Registered and logged in, you could reply and use other advanced thread options
EFS newbie here -
We have an SBS2003 domain and most all work is done in the office on
workstations. Some users are now looking at VPN from home and using Remote
Desktop Connection to their workstations when necessary. This is good, but I
would like to make sure that files that leave the office are not going to
open or otherwise be usable to anyone. For example, if someone copied a file
from our network over a VPN and then tried running it on their own (remote)
computer, the fie would not open or run; But if they brought that same copied
file back into our office, say on a floppy, it would run or open.
From what I know, as long as the key to decrypt the file does not leave the
network, then the file should only open on the network - Right?
Thanks
Paul

Posted by Roger Abell [MVP] on November 18, 2006, 12:22 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Well, you are correct that the private key is needed to decrypt the file.
However, they could easily decrypt the file before taking it offsite,
such as by simply opening it in a Remote Desktop session and saving
non-encrypted, or just copying and pasting at their remote-from machine.
Also, when an EFS file is accessed over the network (via a share) just
where the decryption takes place can differ, but for the most common
deployment it is on the storage machine before the network transfer.

> EFS newbie here -
> We have an SBS2003 domain and most all work is done in the office on
> workstations. Some users are now looking at VPN from home and using
> Remote
> Desktop Connection to their workstations when necessary. This is good,
> but I
> would like to make sure that files that leave the office are not going to
> open or otherwise be usable to anyone. For example, if someone copied a
> file
> from our network over a VPN and then tried running it on their own
> (remote)
> computer, the fie would not open or run; But if they brought that same
> copied
> file back into our office, say on a floppy, it would run or open.
> From what I know, as long as the key to decrypt the file does not leave
> the
> network, then the file should only open on the network - Right?
> Thanks
> Paul



Similar ThreadsPosted
RE: General PKI Question July 8, 2005, 9:07 am
General VPN question January 5, 2006, 4:35 am
General Network Security question October 19, 2005, 4:19 am
General antispyware question for - enterprise deployment August 5, 2005, 5:31 pm
firewall question and windows installer/spyware question September 24, 2006, 8:48 am
General Recommendation November 8, 2006, 10:33 am
IE6 and OE6 security in general March 7, 2007, 4:16 pm
General Recommendations April 25, 2007, 11:47 am
AVG 7/8 - general story April 24, 2008, 12:21 pm
Network security general discussion April 18, 2008, 12:24 pm

The site map in XML format XML site map

Contact Us | Privacy Policy