6.3 Exporting Encryption Keys

The Endpoint Security Agent uses encryption keys to encrypt and decrypt removable data drives. You can export the encryption keys from the Management Zone to a key file to:

  • Share the encryption keys with another ZENworks Management Zone. This allows users in the second zone to unlock removable drives that were encrypted in the first zone.

  • Back up the encryption keys. We recommend that you follow a regular backup schedule in case problems occur with your ZENworks Servers. To back up a key you need to export it.

To export the encryption keys:

  1. In ZENworks Control Center, navigate to Policies and click the policy link for the Microsoft Data Encryption policy that you are using in your zone, and then select the Details tab.

  2. Under Common Tasks (in the left navigation pane) click Encryption: Export Keys.

  3. Specify a name for the key file.

    The file requires a .kbk extension. If you do not add the .kbk extension, it is added automatically.

  4. Specify a password for the key file.

    Make sure you remember the password. It is required in order to import the keys into another Management Zone or reimport them into the current zone (as a restored backup).

  5. Click OK.

    Depending on how your browser is configured to handle saving files, the file might be automatically saved to your browser’s download directory or you might be prompted to save it. Follow any prompts to complete the save process.