A Simple Guide to Encryption

PGP for Email
PGP is a computer program that uses asymmetric and symmetric key encryption in tandem to encrypt the content of emails, files, instant messages, and even entire storage disks such as harddrives. PGP stands for Pretty Good Privacy and was originally written by Phil Zimmerman. Many other programs have been written to help PGP work more easily with other programs. For this tutorial, we will use WinPT (Windows Privacy Tools) [1].

PGP in Windows
  1. Download WinPT. Go to http://winpt.sourceforge.net/en/download.php and download the Windows Privacy Tools complete package. The latest version as of the day this tutorial was written is 1.0rc2. Install the package.

  2. WARNING: Be sure to write down or remember your password. This password cannot be retrieved.

    Configure WinPT. The first time you run WinPT, the program will warn you that no keyrings could be found. Select "Have WinPT generate a new keypair." During this step, you will create the public and private keys essential to asymmetric key encryption. Enter your name, email address, and password when you are prompted for this information. When you complete this step, you should notice a new icon on your taskbar.

  3. Obtain public keys. In order to send encrypted email, you must possess the recipient's public key. You can obtain a person's public key by simply asking them for it. They may send it by email, instant message, or digital media such as a CD or USB thumb drive. You can also search for public keys by email address on a public key server such as the one maintained by MIT [2]. The following is an example of a public key.

    -----BEGIN PGP PUBLIC KEY BLOCK-----
    Version: GnuPG v1.0.5 (MingW32) - WinPT 0.2.1
    Comment: For info see http://www.gnupg.org

    mQGiBDcopz0RBADAcbHfQ4cHWyQVZLmzQFHb1uleLBMoIqTUWQ/M+jgKJWuIS4Bt
    oxa5SOrAkyRCcIplhcwK3dzmyJdS1IODGT/opa2KPgMSAxGf+OI4ewfl9/weK8ew
    +vfJ0reJ7GBktf9VU45jx4OYLVg310c2Io1XF1AsOW+r/yewH4HFznjRbQCg/12s
    S9ueAgzt16T3laWhCxA/BL8D/iWLrUAo2AEInZ1t9PxCuXq1+QAsfjb6I93m4DJl
    HDpRnn5RTRWsPf5mBSBOlT05PzjC0l2RU6Yf90J+cOHElxDlGv0n6XnC3GYvaMNn
    O+xRS6y9s7w9ZN9v7XWeUWiQRSXnfT6BsvRnTM1KHkBR1Iw5ydWYSK/92rWTE5qG
    +ekBA/9IPhfX82t6D42t60q9ntHX8VDbdNk/5c0GzzC2yhA/1unupRpcpL3tIeBc
    id/95x9vq9ssR2b8LK0XrAm5vbeD30Yj0P6x0kZUUi7tVP/RB6WwMekPtF5xfShN
    2FNBofxbsGnAR2cnu8HQ5YqqS2oId0lxcaaInCXR6vptmvaOXLQiVGltbyBTY2h1
    bHogPHR3b2FkYXlAZnJlYWttYWlsLmRlPohGBBARAgAGBQI6TGVEAAoJEF3iSZZb
    A1iiZT0AoI2lh1p9eseJbzJF/CLEkYGTUecyAKCcpxIc+UBqtDV+qwrZJE63mwvr
    HYhGBBARAgAGBQI60f1RAAoJEJg0ZdshQ5QiOCIAoIdPJFgZt9VBxNxHnl8c5MNM
    FxDSAKCe9Ppm4yUrntZ4QzcNof2aiDo0AohWBBMRAgAWBQI5c3foBAsKBAMDFQMC
    AxYCAQIXgAAKCRDtRoHJvz35tOC9AKDIPPEFnPMPabShlr5ETpUGCK3wmgCgkjec
    eXfIZZrYBQ5dGzoqeC9qQBg==ZBvT
    -----END PGP PUBLIC KEY BLOCK-----


  4. Import public keys from a keyserver. Using WinPT, you can search for and import keys automatically. Right click on the WinPT taskbar and choose "Key Manager." Click on the keyserver menu. A new dialog will appear. Select the keyserver you want (.us is a good choice for people located in the USA) and make it your default by clicking on the "default" button. Now you can search by email or key ID by entering text in the text box and clicking "Search." Select the key that you want to add and click "Receive." You are now ready to send emails to that person.

  5. Import keys you have obtained from others.You can also use the Key Manager if you want to import public keys that are not located on a key server. First, find the key wherever you have saved it. This may be in a text file or email. Copy the key as shown above including the -----BEGIN PGP PUBLIC KEY BLOCK----- and -----END PGP PUBLIC KEY BLOCK----- lines. Right click on the WinPT taskbar and choose "Key Manager." Under the "Edit" menu, click "Paste." A dialogue will appear. Confirm that the name and email listed belong to the owner of the key you have requested to be imported, and click "Import."

  6. NOTE: Remember, you must encrypt an email with only the public key belonging to the recipient. If you encrypt an email with a public key not belonging to the recipient, the recipient will not be able to decrypt the email and read your message.

    Encrypt an email. Compose an email to someone whose public key you possess. When you have finished the email and are ready to encrypt it, press <CTRL> <SHFT> E at the same time. A dialogue will appear, asking you to select a key. Select only the public key of the person to whom this email will be delivered.

  7. Decrypt an email. When you receive an encrypted email, you must decrypt it before you can read it. To decrypt an encrypted email, just press <CTRL> <SHFT> D. If it was encrypted with your public key, WinPT will use your private key to decrypt it.





1. WinPT is located at winpt.sourceforge.net.
2. MIT's public key server is located at pgp.mit.edu.



SSL under Apache or
SSL in cPanel
Next - PGP for Linux or         
Next - Hashes for Small Data