What Is the Encrypting File System?

EFS is a component of the NTFS file system that can be used to encrypt data files. Ordinary users of Windows systems can encrypt and decrypt their data files if the following conditions are met:

  • The operating system is Windows 2000, Windows XP Professional, or Windows Server 2003.

  • The file system is NTFS.

  • Data files are not placed in the root or %systemroot% folders. (These areas cannot be encrypted).

  • Files are not marked with the System attribute. (System files cannot be encrypted.)

  • EFS has not been disabled.

It is not necessary for the computer to be joined in a domain, to implement certificate services, or to institute administrative management of certificates and files. However, the security of the system will ...

Get Windows Server 2003 Security: A Technical Reference now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.