> an audit. For instance: could we prevent the deletion of the files? You can protect a file from root decryption, as long as you control who has the keys. But you can't keep root from deleting a file. It sounds like what you really need is a new box. ag