Windows XP users know that the most annoying thing is that they forget to export the Certificate for backing up EFS encrypted files when reinstalling the system. What should I do if this happens? Can't you watch these files? Do you want to reuse these encrypted files? Come with me, but this method of file decryption requires encryption.
Requirements: If the EFS encrypted file certificate is not backed up, you must restore the encrypted file. This is only applicable to the case where the folder is encrypted, but its subfiles and subfolders are not encrypted, and no new files are added to the folder. If the files are encrypted, this method is useless.
Taking the author's operating system as an example, the author's system is Windows Me/XP dual operating system, in order to enable Windows Me to Access Windows XP file system, Windows Me needs to be installed with NTFS For 98, this step is critical.
Note: The software uses seven system files in Window XP, which are: kernel.
First, go to Windows Me and find the encrypted folder to copy the files to any folder. Open the file and check whether the content is what you want.
However, this method is not suitable because most people encrypt all files. Therefore, it is necessary for us to back up the certificate of the EFS encrypted file at ordinary times, so as not to "regret for a lifetime ". If you have backed up the encrypted file certificate, you can use the following methods to retrieve the encrypted file:
Backup key: when there is a backup key, we will not be afraid to open the previously encrypted files when reinstalling the system. Click "Start> Run", enter "certmgr. msc" in the "run" dialog box to open the Certificate Manager, and click "personal> Certificate" under "Certificate> current user" (not visible? Why do you have a certificate if you do not have any encrypted files ?) Right-click "certificate", select "all tasks> export", select "export private key" in the "Certificate export wizard", and then select the directory to save the certificate, press enter to export the private key.
To reinstall the system, import the original private key.
Set Windows Recovery proxy (take the magic user as an example ):
Step 1: first, log on to the system as the magic user.
Step 2: Enter "cipher/r: c: magic" (magic can be any other name) in the "run" dialog box and press enter to enter a password, enter a carriage return and the magic appears in drive C. cer and magic. pfx files.
Step 3: Install the magic. pfx certificate, enter the password of the certificate you just set, and press NEXT to install the certificate.
Step 4: Enter "gpedit" in "Start> Run. msc, open the Group Policy Editor, under "Computer Configuration> Windows Settings> Security Settings> Public Key Policy> encrypting the file system", right-click and choose, select "add data recovery proxy" and open the "add fault recovery proxy wizard" to open magic. cer, and then follow the next step to complete the proxy recovery settings. Finally, you can use the magic user name to decrypt the encrypted file.