[KB7569] Add or locate encryption keys in ESET Endpoint Encryption

Issue

ESET Endpoint Encryption (EEE) Client and EEE Server are separate products from ESET Full Disk Encryption (EFDE)

The article below applies only to the EEE Client or EEE Server and not EFDE.

Visit What's new in ESET Full Disk Encryption to view EFDE content.

Details


Click to expand

Encryption keys are used to encrypt data and are stored in the Key-File. Below are types of data that are encrypted using encryption keys:

  • Files
  • Folders
  • Removable Media
  • Emails
  • Archives
  • Virtual Disks

Encryption keys are unique keys that typically exist on your unique machine. We recommend backing up the key-file in the event of a failure.


Solution

Encryption keys are added to the Key-File in three different ways:

Method 1: Initial set up

  1. During the initial setup, select the check box next to Generate default encryption key, then enter a name for the key and click Next.
Figure 1-1

Method 2: Generate a new key

  1. Click the arrow in the system tray to show hidden icons.

  2. Right-click the ESET Endpoint Encryption (EEE) icon.

  3. Click Key Manager.

  4. Click on an empty line.

  5. Click Generate.

    Figure 2-1
  6. Click Next.

    Figure 2-2
  7. Enter Key Name.

  8. Click Next.

  9. Select Algorithm Type.

  10. Click Finish.

Method 3: Share a key

Share an encryption key via email or network drive/removable memory device with another ESET Endpoint Encryption user. Keys that are shared will maintain the same serial number as the original key. 


Serial Numbers

Each user has a unique Key-File serial number that is tied to their license. When an encryption key is generated, it is given a serial number and index number. The index number increases each time an encryption key is generated.

Restore a Key-File backup:

If you were to restore a Key-File backup onto a second system and then generate a new encryption key on both machines, both systems would list the new key as having the same serial number in the Key Manager. The encryption key data itself would be different, and they would be unable to decrypt data that was encrypted with the original Key-File.

You can view the serial number of an encryption key in Key Manager.

  1. Click the arrow in the system tray to show hidden icons.

  2. Right-click the ESET Endpoint Encryption (EEE) icon.

  3. Click Key Manager.

  4. Select Key-File


    Figure 3-1