Hello, due to new security requirements in my company I must enable encription for some folders in my network file share. For this purpose I decided to implement EFS (Encrypting File System).
After reading some documentation aobut this topic I came up to the Data Recovery Agent section. My question is: is it necesessary to implement AD CS in my domain for it? I read here (https://blogs.technet.microsoft.com/askds/2008/01/07/replacing-an-expired-dra-certificate/) that you can create it also by using cipher.exe utility and a self-signed certificate. What are pros and cons?
Thank you.
Francesco B.