The following information is required by the administration officer during the task:
The key name that will appear in the Key Registry in the explorer bar
The type of key pair storage device to be used for the CA key
The key algorithm and key length to be used for the CA key
Step-by-step instruction
Clicking Save at any time during the definition of the CA key, before signing the task, will save the transaction and place the incomplete key request in the Not In Use folder of the Key Registry.
To complete the key definition at a later stage:
Highlight the key in the explorer bar
Select Modify from the Edit menu, the toolbar, or the right-click shortcut menu.
To create a key request:
In AWB, select New > Key.
In the Create Key Request dialog box, enter the Key name that should appear in the explorer bar of AWB. This field is mandatory.
Set the key State to Active or Closed as required.
Select Domain and check Visible in subdomain if applicable.
In Type of key, select if a new key shall be created or if an existing key in the device shall be used.
In Device, select the appropriate key storage device. The list includes only those devices that are available, plus a software option where the key pair is stored on disk. The Key algorithm corresponding to the selected device will be displayed.
If creating a new key, select the required Length of the key. The list includes only the key lengths appropriate for the algorithm chosen.
If using an existing key, select the Existing key ID of the key. The list includes only keys that are not already in use.