GPG Key Generation for IDS clients
1. Obtain the CU’s public IP address to give to Galaxy. (can use www.whatsmyip.org).
2. Request from Galaxy the 4-digit CU number for this iDS customer. In the steps below, use
this 4-digit CU #, instead of 0212.
3. Request from Galaxy the CU’s ftp username/password. (iDS ftp site is 198.246.218.140)
4. After CDP software is installed on the server, edit the file GPGKeyPath.reg to denote the
proper CDP path, and run the file. (This is to set the home path of gpg to be the CDP path.)
5. To generate the key pair:
C:\Program Files\Carswell Data Products\CDP e-Sig Plus>gpg --gen-key
then : 1 - algorithm
1024 - key length
0 -never expires
y - to confirm
[Real Name] - CDP_cu0212
[Email address] - cu0212@carswelldata.com
[Comment] - Full CU name (ABC Employees Federal Credit Union)
o - letter o for Ok.
[Passphrase] - cu0212@carswelldata.com
[Repeat passphrase] - cu0212@carswelldata.com
6. To export public key to be sent to Galaxy:
C:\Program Files\Carswell Data Products\CDP e-Sig Plus>gpg –o “CDP_cu0212.asc” –-armor –-batch –-export cu0212@carswelldata.com
7. To import Galaxy public key:
C:\Program Files\Carswell Data Products\CDP e-Sig Plus>gpg --import "Operations Department.asc"
8. To sign Galaxy’s public key:
C:\Program Files\Carswell Data Products\CDP e-Sig Plus>gpg --passphrase "cu0212@carswelldata.com" --sign-key "Operations Department"
9. Enter the following parameters in Move Data Config:
Encr Key Name: Operations Department
Passphrase: cu0212@carswelldata.com
10. Run the MoveData scheduled task, to push the files to Galaxy.
11. Note the time MoveData is scheduled to run, so we can tell Galaxy what time they can start
importing.
12. Inform Galaxy of the first few characters of the file names to be pushed: cu0212_0001 (CU #
is 0212 and Branch # is 0001).
13. Send Galaxy the CU’s public key, “CDP_cu0212.asc” file.
14. Make sure Galaxy can decrypt the encrypted zipped files. (For now, call Vivek Sarada.)
15. Have Galaxy notify us as soon as the confirmation log file is available so we can download it.
(Run MoveData again.)
Galaxy's Latest Key is attached to this document
Note:
GnuPG makes use of a per user home directory to store its keys as well
as configuration files. The default home directory is a directory
named "gnupg" below the application data directory of the user. This
directory will be created if it does not exist. Being only a default,
it may be changed by setting the name of the home directory into the
Registry under the key HKEY_CURRENT_USER\Software\GNU\GnuPG using the
name "HomeDir". If an environment variable "GNUPGHOME" exists, this
even overrides the registry setting. The command line option
"--homedir" may be used to override all other settings of the home
directory.
- Operations Department.asc (2 KB)