{"id":904,"date":"2012-09-13T10:23:35","date_gmt":"2012-09-13T10:23:35","guid":{"rendered":"http:\/\/pariswells.com\/blog\/?p=904"},"modified":"2012-09-13T10:23:35","modified_gmt":"2012-09-13T10:23:35","slug":"renew-active-directory-certificate-for-efs","status":"publish","type":"post","link":"https:\/\/pariswells.com\/blog\/fixes\/renew-active-directory-certificate-for-efs","title":{"rendered":"Renew active directory Certificate for EFS"},"content":{"rendered":"\r\n<p><a href=\"http:\/\/pariswells.com\/blog\/wp-content\/uploads\/2012\/09\/1432d1232211761t-encrypted-file-system-efs-certificate-restore-wizard_welcome1.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-medium wp-image-905 img-responsive\" title=\"1432d1232211761t-encrypted-file-system-efs-certificate-restore-wizard_welcome[1]\" src=\"http:\/\/pariswells.com\/blog\/wp-content\/uploads\/2012\/09\/1432d1232211761t-encrypted-file-system-efs-certificate-restore-wizard_welcome1-300x280.jpg\" alt=\"\" width=\"300\" height=\"280\" srcset=\"https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2012\/09\/1432d1232211761t-encrypted-file-system-efs-certificate-restore-wizard_welcome1-300x280.jpg 300w, https:\/\/pariswells.com\/blog\/wp-content\/uploads\/2012\/09\/1432d1232211761t-encrypted-file-system-efs-certificate-restore-wizard_welcome1.jpg 402w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a>Recently some users at a company using the EFS Encryption of their offline files for Windows 7 were not able to access their offline files anymore. We have to reset their offline cache for it to resync. This was due to the\u00a0EFS certificate which is created by default when you create a new domain.<\/p>\r\n<p>This article explains it \u2013 and outlines the process for renewing and replacing the certificate:<\/p>\r\n<p><a href=\"http:\/\/msmvps.com\/blogs\/alunj\/archive\/2007\/03\/24\/efs-in-a-domain-expires-after-three-years.aspx\">http:\/\/msmvps.com\/blogs\/alunj\/archive\/2007\/03\/24\/efs-in-a-domain-expires-after-three-years.aspx<\/a><\/p>\r\n<p>and here\u2019s a more detailed explanation from the MS AD team themselves:<\/p>\r\n<p><a href=\"http:\/\/blogs.technet.com\/b\/askds\/archive\/2008\/01\/07\/replacing-an-expired-dra-certificate.aspx\">http:\/\/blogs.technet.com\/b\/askds\/archive\/2008\/01\/07\/replacing-an-expired-dra-certificate.aspx<\/a><\/p>\r\n<p>The steps are basically:<\/p>\r\n<ol>\r\n\t<li>Export the current certificate to a PFX file (so that you have it in case you need to rollback).<\/li>\r\n\t<li>Create a new certificate from the command line.<\/li>\r\n\t<li>Remove the old certificate from the Default Domain Policy and import the new one.<\/li>\r\n\t<li>Distribute the new certificate by doing a GP update.<\/li>\r\n<\/ol>\r\n","protected":false},"excerpt":{"rendered":"<p>Recently some users at a company using the EFS Encryption of their offline files for Windows 7 were not able to access their offline files anymore. We [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":["post-904","post","type-post","status-publish","format-standard","hentry","category-fixes"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/904","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/comments?post=904"}],"version-history":[{"count":1,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/904\/revisions"}],"predecessor-version":[{"id":906,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/posts\/904\/revisions\/906"}],"wp:attachment":[{"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/media?parent=904"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/categories?post=904"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/pariswells.com\/blog\/wp-json\/wp\/v2\/tags?post=904"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}