In addition to Weibo, there is also WeChat
Please pay attention
WeChat public account
Shulou
2025-01-16 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >
Share
Shulou(Shulou.com)05/31 Report--
What this article shares with you is the example analysis of EFS encryption and decryption and private key export based on NTFS. The editor thinks it is very practical, so I share it with you to learn. I hope you can get something after reading this article.
1. A method of file encryption
1. Only NTFS partitions can use EFS encryption.
2. My computer-tools-folder options-View-cancel simple file sharing
3. Right-click the file or folder you want to encrypt-attribute-Advanced-encrypt the content to protect the data.
(click the "OK" button, go back to the file properties and then click the "apply" button, which will pop up the "confirm property changes" window, type "√" in "use the application for this folder, subfolders and files", and * click the "OK" button to start encrypting the file. In this way, all existing and newly created files and subfolders in this folder are automatically encrypted. )
4. If you want to cancel the encryption, just right-click the folder, uncheck the "encrypt content to protect data" box, and make sure.
Second, faster encryption methods
Encrypting files with the above method needs to be confirmed many times, which is very troublesome. In fact, as long as you modify the registry, you can add "encryption" and "decryption" options to the right-click menu of the mouse, and then right-click when needed to complete the relevant operation. Click start → run, enter regedit, enter, open Registry Editor, navigate to [HKEY_LOCAL_MACHINE/SOFTWARE/Microsoft/Windows/CurrentVersion/Exporer/Advanced], click New → DWORD value on the Edit menu, enter EncryptionContextMenu as the key name, and set the key value to "1". Exit Registry Editor, open Explorer, select any file or folder on a NTFS partition, right-click to find the corresponding "encryption" and "decryption" options in the right-click menu, and click directly to complete the encryption / decryption operation.
Note: after using EFS encryption, export the key before reinstalling the system, otherwise the encrypted file cannot be accessed in the new system.
After using Windows 2000/XP 's EFS encryption, if you reinstall the system, then the original encrypted files cannot be opened! If you don't make a backup of the key in advance, the data will never be opened. It can be seen that it is important to make a good backup of the key.
* * step: first log in as a local account. * is a user with administrator permissions. Then click "start → run", enter "MMC" and enter to open the control panel interface.
Step 2: click Control Panel → add and remove snap-ins in the control panel, click the add button in the pop-up add / remove snap-in dialog box, and click the add button to add the snap-in after selecting Certificate in the add standalone snap-in dialog box.
If you are an administrator, you will be asked to select the certificate method, select my user Certificate, then click the close button, and click the OK button to return to the Control Panel.
Step 3: expand "Control Panel Root Node → Certificate → personal → Certificate → Select accounts in the right window" on the left, right-click and select "all tasks → Export", and pop-up "Certificate Export Wizard"
Step 4: click the "next" button, select "Yes, Export the private key", click the "next" button, check the "if possible, include all certificates in the certificate path" and "enable enhanced protection" items under "Private Information Exchange". Click the "next" button to enter the password setting interface.
Step 5: enter the setting password, which is very important. Once forgotten, you will never get it, and you will never be able to import the certificate. Click the next button when you are finished, and select the location and file name to save the private key.
Step 6: click the "finish" button, pop up the "Export success" dialog box, indicating that your certificate and key have been successfully exported, open the path to save the key, you will see a "envelope + key" icon, this is your precious key! Losing it means not only that you can no longer open your data, but also that others can easily open your data.
3. Import EFS key
Since we cannot open the files encrypted by EFS after reinstalling the system, we must remember to export the key before reinstalling the system, and then import the backup key in the new system to get permission.
1. Make sure you have the right to view the imported key, otherwise it will be useless if you import it. This requires that it be done when exporting.
two。 Remember the password you set when you export. * use the same user name as the export.
* step: double-click the exported key (the file of the "Envelope + key" icon), you will see the Certificate Import Wizard welcome interface, click the "next" button, confirm the path and key certificate, and then click "next" to continue.
Step 2: enter the password you set when exporting after "password". After entering the password, check "enable strong key protection" and "flag this key can be exported" (to ensure that it can be exported next time), and then click "next" to continue.
Step 3: according to the prompt, click the "next" button, OK, click the finish button, see "import successful" means that you have successfully imported the key.
Try to see if all the files that could not be opened can be opened now.
IV. matters needing attention
1.EFS encrypted files can not be opened, converting NTFS partitions to FAT32 partitions or logging in with the same user name and password or even re-Ghost back to the original system will not solve the problem, so it is very important to back up and import EFS keys.
2.Windows XP Home Edition does not support the EFS feature.
The above is an example analysis of EFS encryption and decryption and private key export based on NTFS. The editor believes that there are some knowledge points that we may see or use in our daily work. I hope you can learn more from this article. For more details, please follow the industry information channel.
Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.
Views: 0
*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.
Continue with the installation of the previous hadoop.First, install zookooper1. Decompress zookoope
"Every 5-10 years, there's a rare product, a really special, very unusual product that's the most un
© 2024 shulou.com SLNews company. All rights reserved.