Endpoint Encryption

 View Only
  • 1.  Novice needs advice on Encryption Desktop public key for multiple users

    Posted May 28, 2014 12:57 PM

    I'm in Finance with NO technical experience and have what I believe to be a VERY easy question for someone who knows this product.  

    I and 4 other colleagues are exchanging data with a vendor on an FTP site and we want the files we exchange, back and forth, to be encrypted.  

    All 4 of us have encryption desktop and the vendor's public key so we have no problem encrypting files and dropping them off.  The vendor has no problem un-encrypting.

    However, the vendor's automated application that picks up our files can only encrypt our files using 1 key.  Since I was the first to install the software, I sent the vendor my public key and was able to receive files from them and unencrypt.

    Is there a way for the other 3 people to also be able to open the file that's encrypted with my public key?  I was hoping there was a way I could share my key with them so they can pick up files from the vendor and un-encrypt them.  Is anyone aware of any way to do that?

    Or is there a way for me to create a new key that can be shared among the 4 of us?

    From what I gather it seems my only option is that I'll be the only person able download all the files.

    Thoughts?

    Thanks!



  • 2.  RE: Novice needs advice on Encryption Desktop public key for multiple users

    Posted May 28, 2014 01:25 PM

    One way I can think of is to share other three public keys with vendor to include in their automated encryption command.

    or

    Use a new key pair and share with all people for this encryption/decryption specifically, instead of their individual keys.

    In both ways the encryption process at vendor side will have modification because public key will have to be set as per new changes.



  • 3.  RE: Novice needs advice on Encryption Desktop public key for multiple users

    Posted May 28, 2014 01:35 PM

    Thanks, Arif!

    So if I use a new key pair, am I sharing both the public and private key?  While sifting through documentation or searching online, I thought I read you shouldn't create multiple public keys (like a passport) and should never share a private key. 

    Is there any specific documentation you can point me to regarding how to create the new key pair and share it like you suggested?  If I need to share a private key, I don't see how to do that.  All of the documentation I looked at expects some level of familiarity with the product and what it does so I'm sure I'm misinterpreting some things.  I would like to try that solution.

    Thanks again!  Your prompt response is much appreciated.  



  • 4.  RE: Novice needs advice on Encryption Desktop public key for multiple users
    Best Answer

    Broadcom Employee
    Posted May 29, 2014 03:20 AM

    Hi MrsForty,

    As it was said one of the way would be to create a new key pair just ONLY for this specifc purpose (encryption/decryption) and share the private part with other 3 people. It is not a comman thing to do as the private part should alwasy stay with one person ( one person one key like a passport or ID card).

    To create a key pair you can use the following article please as below:

    HOW TO: Create a PGP Key in Encryption Desktop for Windows
    http://www.symantec.com/docs/HOWTO42070

    After creating a new key pair you will have to export/share private part so please follow below article: (you can export both public and private part in one file or separately public and private part)

    HOW TO: Export PGP Keys in Encryption Desktop for Windows
    http://www.symantec.com/docs/TECH149508

    To export both public and private part follow below steps please:

    1. Open Encryption Desktop.Click PGP Keys.
    2. Highlight the PGP key you wish to export, then select the File menu and click Export > Key.
      Please select Include Private Key(s) box in the lower left corner..
    3. When the Export Key to File window appears, select a location to export the key, then click Save. The key will then be exported as an .asc file to the location you specified.
    4. Open an .asc file and copy private key block only which is between Begin and End  to a new file and redistribute to other people in secure way (via pendrive for example)
       

    HTH



  • 5.  RE: Novice needs advice on Encryption Desktop public key for multiple users

    Posted May 29, 2014 08:33 AM

    Works perfectly!  Thanks!!!



  • 6.  RE: Novice needs advice on Encryption Desktop public key for multiple users

    Broadcom Employee
    Posted May 29, 2014 08:39 AM

    Thank you for marking solution which could be helpfull for others in the future and I am happy that it worked for you.