Last Updated: 2024-12-19
Purpose
This article describes how to set up a PGP public key on a user account in the Portal.
Introduction
PGP (Pretty Good Privacy) encryption for OUTSCAN accounts is essential for ensuring the confidentiality, integrity, and authenticity of sensitive data when communicating via email. Email is inherently insecure. For example, scan reports often contain critical information that could be intercepted or tampered with during transmission. PGP encryption secures this data by encrypting it, making it accessible only to authorized recipients who possess the corresponding key.
Additionally, PGP provides digital signatures, which verify the sender's identity and ensure that the report has not been altered. This is particularly important for system-generated emails, where trust and data accuracy are paramount.
Implementing PGP encryption not only protects against data breaches but also helps your organization comply with data protection regulations and industry standards, enhancing overall security.
Setting Up PGP Private Keys on User Accounts
Prerequisite
Before starting the setup, generate your PGP key pair using a software that supports PGP such as GnuPG, Kleopatra, PuTTYgen or GPGTools, and export your public key.
Set Up
-
To navigate to this section,
-
Log in to OUTSCAN / HIAB.
-
Go to Main Menu > Portal.
-
Click the Account icon in the upper right corner.
-
Select the IAM card to access the IAM page.
This displays the Identity Access Management page which is divided in three tabs, Users, Roles, and Resource Groups.
-
-
Edit a user or sub-user on the IAM page.
-
Select the PGP tab, click the blue
PEM FILEbutton to upload your PGP public key file.
-
The uploaded file name is displayed below the button.
If the key is invalid, an error message will be displayed below the file name.
-
Click the blue
UPDATEbutton to save the key. -
When editing users that have already setup a PGP key, a blue
tick icon is displayed on the PGP tab.
-
To verify the changes, create an email event that sends notification emails to a user that has a PGP key.
To remove any existing keys, click the delete icon next to the file name and click the UPDATE button, this will allow emails to be sent unencrypted:
Related Articles
- Reports
- Log In Using LDAP
- Report Library
- Vulnerability Database
- Removing an Agent from Windows
- Delta
- Scan Blueprint
- Technical Specification
- Schedules
- Installing a Linux Agent
- Workflows
- Troubleshooting checklists
- User Management
- Check Connectivity to Agent Server
- Scan Scheduling Errors
- HIAB Deployment Guide
- Managing Tags
- Checking if Agent is Running
- Agent Installation Introduction
- Common Settings Panel
- Scanning Range
- Role Management
- Portal Icon List
- Agent Call Home
- Asset Discovery
- XML API Interface Technical Document
- Using the Agent Info Command
- Scheduled Reports
- Removing an Agent from Linux
- Solutions
- Identity and Access Management (IAM)
- Understanding Scanner and Scheduler
- Licensing Consumption
- Installing a macOS Agent
- Agent Introduction
- Setting Up an Agent Using System Proxy
- DNS Lookup in UI and in Console
- Supported Browsers
- HIAB Console
- Certificates
- Marking as False Positives
- Managing Agents
- Event Notification - Integration
- HIAB Distribution Settings
- Agent Latest Version
- Column Configuration
- PGP on User Accounts
- Event Notification - Use Cases
- Logging in to the Portal
- Firewall Rules
- Account
- Notification Settings
- Products Database
- Log In Using Single Sign-On (SSO)
- Scan Assessment Configuration
- View Templates
- Ports
- Installing a Windows Agent
- Generate Reports
- Basic Credentials
- Scan Stages
- Object Identifiers
- Subscriptions Overview
- Services
- REST API Interface Technical Document
- Getting Started with the Portal
- Scan Configuration Settings
- Scans View
- Retrieving a REST API Token From XMLAPI
- HIAB E-mail Whitelisting
- Scan Credentials
- API Examples
- Tags
- Accepting a Risk
- Importing Tags for AWS Discovery
- Discovery Scan Configuration
- Products
- Vulnerabilities
- Scan Policies
- Resource Group Management
- Download Agents
- Discussions and Commenting
- Filters
- Notifications
- 2FA on User Accounts
- Assets