Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Server > Server Security > remote EFS file share and constrained delegation

Reply
Thread Tools Display Modes

remote EFS file share and constrained delegation

 
 
Ondrej Sevecek
Guest
Posts: n/a

 
      05-27-2009
hello,

I have 4 computers. Say XP1 (client), DC1 (domain controller), FS1 (file
server) and CA1 (certificate authority). I need to enable XP1 users (domain
accounts) to access EFS encrypted files on FS1. This requires a delegation
to be configured for FS1 (they will be generating new keys).

This works for me if I configure it for just UNconstrained delegation. But
what exactly should I configure in this scenario to work with constrained
delegation.

Currently, I have the following constrained delegation configured for FS1,
but it is not sufficient to enable the users/FS1 to obtain new certificates
from CA1:
fs1: can delegate to CIFS/DC1
fs1: can delegate to LDAP/DC1
fs1: can delegate to ProtectedStorage/DC1
fs1: can delegate to GC/DC1
fs1: can dleegate to RPCSS/CA1
fs1: can delegate to HOST/CA1

so which servrivce in addition should I enable to be delegated to?

ondrej.

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
coping file from a remote file share - FILE IS NO LONG THERE bogus error message Heith Windows Vista Networking 0 10-18-2007 08:58 PM
Trouble w/ Constrained Delegation Virtual Server & SBS Dale Networkguy Windows Small Business Server 2 07-06-2006 12:09 PM
Re: Kerberos Constrained Delegation For Access To A Single Application Pool Al Mulnick Active Directory 0 04-23-2006 01:45 AM
File access performance from remote Share Puzzler8 Server Networking 1 01-25-2006 03:03 AM
How to share a file between remote users? Mike R. Windows Small Business Server 9 01-10-2005 01:40 AM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59