Fast Pass MCSE Exams Operations Master
For the certification exam?s purposes, you need to know that EFS is an encrypting tech- nology and that it is made possible through the use of certi?cates. Additionally, EFS can be deployed through certi?cate authorities, within which Group Policy can assign users as data recovery agents to retrieve data that has been encrypted and needs to be recovered.
If data is taken from an encrypted NTFS (EFS) file system and copied to a FAT32 volume, the data will no longer be encrypted!
In addition to the Encrypting File System (EFS), mcitp server administrator and Windows Vista now implement Windows BitLocker. The advantage of Windows BitLocker over EFS is that BitLocker encrypts all ?les, including hibernation ?les and system ?les. According to Microsoft, the primary purpose of BitLocker is to secure the entire volume against the pos- sibility of the volume being stolen or physically compromised in some manner.
Within any critical Windows Server 2008 environment, one of the primary responsibilities of a prudent administrator is to make sure that, along with the critical data that is stored throughout an environment, the environment itself can be rebuilt in case of an extreme fail- ure, such as the loss of AD DS.
According to Microsoft, two of the best practices to follow when first designing an infrastructure are, first, to make sure that your Active Directory domain controllers can be recovered, regardless of any potential loss; and, second, to make sure your operating system ?les are stored in another directory by themselves.
To recover Active Directory domain controllers, you have to make sure that two mcsa certification critical components of the Active Directory infrastructure are stored in separate volumes:
By doing this, you ensure that the system volume directory and the Active Directory database are stored in places that are easily recoverable.