OpenPGPメール暗号化¶
Compatible Nitrokeys |
|||||||
|---|---|---|---|---|---|---|---|
✓ active |
⨯ inactive |
⨯ inactive |
✓ active |
⨯ inactive |
✓ active |
✓ active |
⨯ inactive |
電子メールの暗号化には、広く使われている2つの規格があります。
個人ではOpenPGP/GnuPGが人気です。
S/MIME/X.509は主に企業で使用されています。
If you are in doubt which one to choose, you should use OpenPGP. While this page describes the usage of OpenPGP, S/MIME is described here.
例えば、Free Software Foundationの`この情報のグラフィック<https://emailselfdefense.fsf.org/en/infographic.html>`_を読むなどして、OpenPGP規格の背後にある一般的な概念をまず理解してください。
キー・ジェネレーション¶
まだOpenPGPの鍵を持っていない場合は、まず鍵を生成する必要があります。
`ニトロキーデバイスで鍵を生成する<openpgp-keygen-gpa.html>`_
This is the best option if you are inexperienced, but you won't have a backup of your keys and therefore won't be able to mitigate the loss of the Nitrokey
`ニトロキーデバイスで、異なるアルゴリズムや鍵長を使用して鍵を生成する<openpgp-keygen-on-device.html>`_
This is as secure as the previous option and thus you won't have a backup as well, but you can change the key attributes (that is the algorithm and key size)
`ローカルで鍵を生成する<openpgp-keygen-backup.html>`_
Copy them to your Nitrokey device - this is the most flexible, expert option, but only secure if your system is not compromised, because you can create a backup key outside your Nitrokey A similar description in French can be found here.
既存のキーのインポート¶
すでにOpenPGPキーをお持ちの方は、新しいキーを生成する代わりに、Nitrokeyでそのキーを使用することができます。既存の鍵をインポートする方法は、基本的にはローカルで鍵を生成し、それをNitrokeyにコピーする方法と同じです(上記参照)。したがって、`対応する説明書<openpgp-keygen-backup.html#key-import>`_を参照してください。なお、既存の鍵に認証用の別のサブキーを生成したい場合もあるでしょう。`サブキーの生成 <openpgp-keygen-backup.html#subkey-for-authentication>`_については、同じ指示を参照してください。
使用方法¶
このページでは、使用方法についての詳しい情報をご覧いただけます。