Join All Desktops and Laptops to a Domain
File recovery is a key component of a successful EFS deployment. If you want to use a central DRA within a domain to recover files, it is essential that all computers be members of that DRA's domain.
If a user encrypts files on a standalone computer, then you must protect the local DRA's private file recovery key. A laptop with the DRA private key on the hard drive is not secure.