Chapter 21. EFS

In this chapter

EFS Concepts

MEFS Architecture

How EFS Uses PKI

Certificate Services

Encryption Process

Decryption Process

Using EFS

New in Windows 2000 is the capability to encrypt files and directories. This long-awaited feature addresses security holes that administrators experienced with previous versions of Windows NT, especially with third-party operating system tools, such as NTFSDOS or the NTFS Driver for Linux. The new version of NTFS and the cryptography support gives Windows 2000 the ability to use the encrypting file system (EFS). The encryption technology is public-key-based and runs as an integrated system service, transparent for the user and difficult for intruders to attack.

The encrypting file system will become useful ...

Get Microsoft® Windows® 2000 Security Handbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.