{"id":1203,"date":"2015-11-03T15:22:17","date_gmt":"2015-11-03T13:22:17","guid":{"rendered":"http:\/\/svobodma.cz\/?p=1203"},"modified":"2016-04-16T10:21:52","modified_gmt":"2016-04-16T08:21:52","slug":"jak-zabranit-obnove-smazanych-dat-na-disku-ntfs","status":"publish","type":"post","link":"https:\/\/svobodma.cz\/?p=1203","title":{"rendered":"Jak zabr\u00e1nit obnov\u011b smazan\u00fdch dat na disku &#8211; NTFS ?"},"content":{"rendered":"<p>Co t\u0159eba p\u0159\u00edklad, kdy m\u00e1m na po\u010d\u00edta\u010di nebo serveru n\u011bjak\u00e1 data, kter\u00e1 nechci aby \u010delt n\u011bkdo jin\u00fd (server bude vyu\u017e\u00edvat ciz\u00ed admin a j\u00e1 zde ukl\u00e1dal d\u016fv\u011brn\u00e1 data). Data na serveru sma\u017eu, ale to nikomu nezabr\u00e1n\u00ed aby byla data obnovena. Tedy dokud neprovedu alespon jedno p\u0159eps\u00e1n\u00ed na disku v m\u00edst\u011b, kde byla p\u016fvodn\u00ed data zaps\u00e1na.<\/p>\n<p>K tomuto n\u00e1m slou\u017e\u00ed integrovan\u00fd n\u00e1stroj <strong>cipher.exe . \u00a0<\/strong>Tento n\u00e1stroj je dostupn\u00fd u\u017e od Windows Serveru 2003 :\\, no j\u00e1 o n\u011bm teda fakt nev\u011bd\u011bl :). Na tyhle v\u011bci jsem do ned\u00e1vna pou\u017e\u00edval specilizovan\u00fd n\u00e1stroj t\u0159et\u00ed strany \ud83d\ude42 .<\/p>\n<p><a href=\"http:\/\/svobodma.cz\/?attachment_id=1207\" rel=\"attachment wp-att-1207\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-1207\" src=\"http:\/\/svobodma.cz\/marwin.e-blog.cz\/httpdocs\/wp-content\/uploads\/cipher.png\" alt=\"cipher\" width=\"398\" height=\"201\" srcset=\"https:\/\/svobodma.cz\/marwin.e-blog.cz\/httpdocs\/wp-content\/uploads\/cipher.png 664w, https:\/\/svobodma.cz\/marwin.e-blog.cz\/httpdocs\/wp-content\/uploads\/cipher-150x75.png 150w, https:\/\/svobodma.cz\/marwin.e-blog.cz\/httpdocs\/wp-content\/uploads\/cipher-560x282.png 560w\" sizes=\"auto, (max-width: 398px) 100vw, 398px\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<p>C:\\Users\\svobodma&gt;<strong>cipher \/?<\/strong><\/p>\n<p>Displays or alters the encryption of directories [files] on NTFS partitions.<\/p>\n<p>CIPHER [\/E | \/D | \/C]<br \/>\n[\/S:directory] [\/B] [\/H] [pathname [&#8230;]]<\/p>\n<p>CIPHER \/K [\/ECC:256|384|521]<\/p>\n<p>CIPHER \/R:filename [\/SMARTCARD] [\/ECC:256|384|521]<\/p>\n<p>CIPHER \/U [\/N]<\/p>\n<p>CIPHER \/W:directory<\/p>\n<p>CIPHER \/X[:efsfile] [filename]<\/p>\n<p>CIPHER \/Y<\/p>\n<p>CIPHER \/ADDUSER [\/CERTHASH:hash | \/CERTFILE:filename | \/USER:username]<br \/>\n[\/S:directory] [\/B] [\/H] [pathname [&#8230;]]<\/p>\n<p>CIPHER \/FLUSHCACHE [\/SERVER:servername]<\/p>\n<p>CIPHER \/REMOVEUSER \/CERTHASH:hash<br \/>\n[\/S:directory] [\/B] [\/H] [pathname [&#8230;]]<\/p>\n<p>CIPHER \/REKEY [pathname [&#8230;]]<\/p>\n<p>\/B Abort if an error is encountered. By default, CIPHER continues<br \/>\nexecuting even if errors are encountered.<br \/>\n\/C Displays information on the encrypted file.<br \/>\n\/D Decrypts the specified files or directories.<br \/>\n\/E Encrypts the specified files or directories. Directories will be<br \/>\nmarked so that files added afterward will be encrypted. The<br \/>\nencrypted file could become decrypted when it is modified if the<br \/>\nparent directory is not encrypted. It is recommended that you<br \/>\nencrypt the file and the parent directory.<br \/>\n\/H Displays files with the hidden or system attributes. These files<br \/>\nare omitted by default.<br \/>\n\/K Creates a new certificate and key for use with EFS. If this<br \/>\noption is chosen, all the other options will be ignored.<\/p>\n<p>Note: By default, \/K creates a certificate and key that conform<br \/>\nto current group policy. If ECC is specified, a self-signed<br \/>\ncertificate will be created with the supplied key size.<\/p>\n<p>\/N This option only works with \/U. This will prevent keys being<br \/>\nupdated. This is used to find all the encrypted files on the<br \/>\nlocal drives.<br \/>\n\/R Generates an EFS recovery key and certificate, then writes them<br \/>\nto a .PFX file (containing certificate and private key) and a<br \/>\n.CER file (containing only the certificate). An administrator may<br \/>\nadd the contents of the .CER to the EFS recovery policy to create<br \/>\nthe recovery key for users, and import the .PFX to recover<br \/>\nindividual files. If SMARTCARD is specified, then writes the<br \/>\nrecovery key and certificate to a smart card. A .CER file is<br \/>\ngenerated (containing only the certificate). No .PFX file is<br \/>\ngenerated.<\/p>\n<p>Note: By default, \/R creates an 2048-bit RSA recovery key and<br \/>\ncertificate. If ECC is specified, it must be followed by a<br \/>\nkey size of 256, 384, or 521.<\/p>\n<p>\/S Performs the specified operation on the given directory and all<br \/>\nfiles and subdirectories within it.<br \/>\n\/U Tries to touch all the encrypted files on local drives. This will<br \/>\nupdate user&#8217;s file encryption key or recovery keys to the current<br \/>\nones if they are changed. This option does not work with other<br \/>\noptions except \/N.<br \/>\n\/W Removes data from available unused disk space on the entire<br \/>\nvolume. If this option is chosen, all other options are ignored.<br \/>\nThe directory specified can be anywhere in a local volume. If it<br \/>\nis a mount point or points to a directory in another volume, the<br \/>\ndata on that volume will be removed.<br \/>\n\/X Backup EFS certificate and keys into file filename. If efsfile is<br \/>\nprovided, the current user&#8217;s certificate(s) used to encrypt the<br \/>\nfile will be backed up. Otherwise, the user&#8217;s current EFS<br \/>\ncertificate and keys will be backed up.<br \/>\n\/Y Displays your current EFS certificate thumbnail on the local PC.<br \/>\n\/ADDUSER Adds a user to the specified encrypted file(s). If CERTHASH is<br \/>\nprovided, cipher will search for a certificate with this SHA1<br \/>\nhash. If CERTFILE is provided, cipher will extract the<br \/>\ncertificate from the file. If USER is provided, cipher will<br \/>\ntry to locate the user&#8217;s certificate in Active Directory Domain<br \/>\nServices.<br \/>\n\/FLUSHCACHE<br \/>\nClears the calling user&#8217;s EFS key cache on the specified server.<br \/>\nIf servername is not provided, cipher clears the user&#8217;s key cache<br \/>\non the local machine.<br \/>\n\/REKEY Updates the specified encrypted file(s) to use the configured<br \/>\nEFS current key.<br \/>\n\/REMOVEUSER<br \/>\nRemoves a user from the specified file(s). CERTHASH must be the<br \/>\nSHA1 hash of the certificate to remove.<\/p>\n<p>directory A directory path.<br \/>\nfilename A filename without extensions.<br \/>\npathname Specifies a pattern, file or directory.<br \/>\nefsfile An encrypted file path.<\/p>\n<p>Used without parameters, CIPHER displays the encryption state of the<br \/>\ncurrent directory and any files it contains. You may use multiple directory<br \/>\nnames and wildcards. You must put spaces between multiple parameters.<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Co t\u0159eba p\u0159\u00edklad, kdy m\u00e1m na po\u010d\u00edta\u010di nebo serveru n\u011bjak\u00e1 data, kter\u00e1 nechci aby \u010delt n\u011bkdo jin\u00fd (server bude vyu\u017e\u00edvat ciz\u00ed admin a j\u00e1 zde ukl\u00e1dal d\u016fv\u011brn\u00e1 data). Data na serveru sma\u017eu, ale to nikomu nezabr\u00e1n\u00ed aby byla data obnovena. &hellip; <a href=\"https:\/\/svobodma.cz\/?p=1203\">Cel\u00fd p\u0159\u00edsp\u011bvek <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[],"class_list":["post-1203","post","type-post","status-publish","format-standard","hentry","category-microsoft-windows"],"_links":{"self":[{"href":"https:\/\/svobodma.cz\/index.php?rest_route=\/wp\/v2\/posts\/1203","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/svobodma.cz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/svobodma.cz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/svobodma.cz\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/svobodma.cz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1203"}],"version-history":[{"count":4,"href":"https:\/\/svobodma.cz\/index.php?rest_route=\/wp\/v2\/posts\/1203\/revisions"}],"predecessor-version":[{"id":1220,"href":"https:\/\/svobodma.cz\/index.php?rest_route=\/wp\/v2\/posts\/1203\/revisions\/1220"}],"wp:attachment":[{"href":"https:\/\/svobodma.cz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1203"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/svobodma.cz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1203"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/svobodma.cz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1203"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}