Summary

The Encrypting File System is a valuable addition to data security, whether implemented in a domain or on a single standalone machine. A sound recovery policy is needed, however, because encryption keys can become damaged, accidentally deleted, or destroyed. Best practices dictate that the implementation of CA-produced encryption keys will make the system easier to manage.

Get Windows Server 2003 Security: A Technical Reference now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.