Do not close the browser after initiating the key recovery. The agent must wait for all other agents to authorize
the key recovery request before the system returns the hyperlink to download the PKCS #12 file containing the
private key. This page keeps refreshing to check if all other agents have authorized.
8.
Every DRM agent must approve the key recovery once the agent receives the recovery authorization number.
a.
Open the DRM agent services page.
b.
Select Authorize Recovery.
c.
Enter the recovery authorization request number.
d.
Select Examine to examine the key being recovered.
e.
Select Grant to complete the key recovery.
9.
Once all agents have authorized the recovery, then the agent who initiated the key recovery request is given a link
download (import) the PKCS #12 file.
10. When selecting the PKCS #12 file, a dialog box appears. Specify the path and filename to save the encrypted file con-
taining the recovered certificate and key pair.
11. Send the encrypted file to the requester.
12. Give the recovery password to the requester in a secure manner.
The requester must use this password to import the recovered certificate/key pair.
2.2. Recovering Keys
48
Chapter 6. DRM: Recovering Encrypted
Summary of Contents for CERTIFICATE SYSTEM 7.2 - AGENT GUIDE
Page 1: ...Red Hat Certificate System Agent Guide 7 2 ...
Page 3: ......