Creating PGP keys

You can create PGP keys with different encryption algorithms and key lengths.

  1. Go to Identities > Key enrolment > Key enrolment provider.
  2. Click Add.
  3. Select PGP key and click Next.
  4. Enter a unique name.
  5. Select the PGP key type and key length and click Next.

    NOTE: RSA and DSA with ElGamal are available. The configuration that suits you best depends on the communication partners with whom you want to exchange signed and encrypted emails later. Ask them which key algorithms and key lengths are supported by your infrastructure.

  6. Determine the validity for the key.

    TIP: This makes sense, since keys with a longer key length may be necessary due to increasing computing capacity.

  7. Sign the new keys with an existing key.

    TIP: In certain situations, this can simplify the key exchange, as only the higher-level key - for example the company key - then needs to be exchanged. All PGP keys signed with this key are then automatically considered trustworthy.


  8. Click Finish.

See also

Requesting cryptographic keys