파일시스템
2011.03.17 13:40

EFS - Encrypting File System

조회 수 1560 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 수정 삭제
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄 수정 삭제

EFS - Encrypting File System. Encrypted Files and Folders
(NTFS ver. 3.0 and newer)

The Encrypting File System (EFS) provides the core file encryption technology used to store encrypted files on NTFS volumes. EFS keeps files safe from intruders who might gain unauthorized physical access to sensitive, stored data (for example, by stealing a portable computer or external disk drive).

Users work with encrypted files and folders just as they do with any other files and folders. Encryption is transparent to the user who encrypted the file; the system automatically decrypts the file or folder when the user accesses. When the file is saved, encryption is reapplied. Users who are not authorized to access the encrypted files or folders transparently receive an "Access denied" message if they try to open, copy, move, or rename the encrypted file or folder. The exact message text may vary depending on application which tries to access the file, because it is related not to user rights for file but to ability of EFS to decrypt file using user's private key.

EFS has the following benefits over 3rd party encrypting applications:

  1. It is transparent for user and any applications. There's no risk for user to forget to encrypt file and leave data unprotected. Once file or folder is marked as encrypted, it will be encrypted in background without interaction with user. User does not need to remember password to decrypt files.
  2. Strong key security. In contrast to other solutions when keys are based on user entered pass-phrase, EFS generates keys which are tolerant to dictionary based attacks.
  3. All encrypting/decrypting processes are performed in kernel mode, excluding the risk of leaving key in paging file, from where it could be possibly extracted.
  4. EFS provides data recovery mechanism which is valuable in business environment, giving an organization an opportunity to restore data even if the employee who encrypted it left the company.
?

List of Articles
번호 분류 제목 글쓴이 날짜 조회 수
67 서버/레이드 RAID 1E admin 2011.03.30 1809
66 포렌식 Digital Forensic 의 정의 admin 2011.03.19 102385
65 파일시스템 hfs+ 개요 admin 2011.03.19 172812
64 파일시스템 ext2 개요 admin 2011.03.19 6030
63 파일시스템 EXT3 개요 admin 2011.03.19 2548
62 파일시스템 파일시스템의 정의 admin 2011.03.17 1723
61 파일시스템 NTFS Optimization admin 2011.03.17 9386
60 파일시스템 NTFS vs FAT admin 2011.03.17 4181
59 파일시스템 Data Integrity and Recoverability with NTFS admin 2011.03.17 1487
58 파일시스템 NTFS Sparse Files (NTFS5 only) admin 2011.03.17 1655
57 파일시스템 Issues with EFS admin 2011.03.17 1473
56 파일시스템 $EFS Attribute admin 2011.03.17 1513
55 파일시스템 EFS Internals admin 2011.03.17 112600
54 파일시스템 Using EFS admin 2011.03.17 1535
» 파일시스템 EFS - Encrypting File System admin 2011.03.17 1560
52 파일시스템 NTFS Compressed Files admin 2011.03.17 1478
51 파일시스템 NTFS Multiple Data Streams admin 2011.03.17 1387
50 파일시스템 NTFS 시스템 파일 admin 2011.03.17 1558
49 파일시스템 NTFS 파일속성 admin 2011.03.17 1311
48 파일시스템 NTFS MFT 분석 admin 2011.03.17 1432
Board Pagination Prev 1 2 3 4 5 6 Next
/ 6