Key Management

Key Manager Key Manager

Key Manager shows a GUI view of your keystore. It lets you add and delete keys and edit their associated notes. Before you can secure files for yourself or other people you must first use Key Manager to create or add your personal keys and other people's keys to FAOPGP.

Selecting 'Key Manager' from the Security menu displays the following tabbed dialog:

Key Manager


Main Tabs

 My Own Keys
This tab lists your personal protection (encryption and signing) keys. You always digitally sign files with your personal protection keys. You encrypt files with your personal protection keys when you want to make sure that only you can access them.  See My Keys for further information.

 Other People's Keys
This tab lists other peoples keys that you have imported into Key Manager.  Files that you encrypt using these keys can only be accessed by people that own the keys. See Other People's Keys for further information.

 Authorities
This tab contains industry recognized Certification Authorities (CAs) that vouch for the validity of keys used to sign files.  See Authorities for more information.



Menu Options

Import Key File  Import Keys
Adds keys to your keystore. These may be keys belonging to you or keys provided by other people. See importing keys to Key Manager.

Export Key File  Export Keys
Exports keys from your keystore. You can also right-click on a key to export it. See exporting keys from Key Manager.

Generate Signing Key  Generate Key
Generates a personal protection key pair for you (encryption and signing key).  See generating keys for more information.

Delete Key  Delete Key
Removes keys from your keystore. Highlight a key and then select this option. A dialog will be displayed asking you to confirm that you wish to delete the key before deletion takes place because this action cannot be reversed.  You should always backup your keystore before deleting keys.

Change Password  Change Keystore Password
Selecting this option enables you to change your keystore (logon) password.  See keystore logon & security.

Backup keystore  Backup Keystore
Backs up the keys in your keystore.  See backing up your keystore for more information.

Restore keystore  Restore Keystore
Restores a previous backup of your keystore.  See restoring your keystore for more information.

Exit  Exit
Closes the Key Manager application.



Main Display Area

The main display area initially displays the default names of the keys in your keystore and their associated email addresses. The email address is used by FAOPGP when sending files securely by email. The names shown are 'friendly names' that should help you identify the source of the key. You can change names by double-clicking on the appropriate key name, editing it and pressing 'Enter'. You would normally only make changes when the name is not helpful. A flashing cursor is displayed in the selected field to let you know you are in EDIT mode.

NOTE:  Whilst you can change the name associated with a key this is unique to your keystore - this information is never exported with the key - the original name assigned during key generation is always used.

A Validity Check is displayed next to the key name if the key has been successfully validated.



Notes
You can enter any information you find useful in this section. This information is purely for your own purposes, to help you identify keys, or to store additional information associated with them.  For example, you may want to enter what you use this key for or for storing additional information about the owner of the key (such as their address or phone number).  The notes section is not used by FAOPGP for any purpose and notes are not exported with keys.

Editing Notes
You can edit notes at any time by highlighting the appropriate key and selecting Edit button

Saving Notes
Select Save button in order to save the changes you have made.

Cancelling Changes
Select Cancel button in order to cancel any changes you have made.



Key Information
Information displayed at the bottom of the dialog tells you what certificates certify the key you have selected.  If you have generated a key in FAOPGP, then certificate types X509 and PGP will be displayed.

Advanced Key Information button Press this button to view additional key information associated with the key you have selected (highlighted).