In older versions of Windows Server (2003/2008 R1), keys were stored in the userCertificate attribute in a less structured format. Modern environments (Server 2008 R2 and later) utilize the dedicated msFVE attributes, which allows for better history tracking (storing multiple passwords if the drive is re-encrypted or recovery keys are rotated).