1.5 Regenerate Key

Each Corente Virtual Services Gateway maintains a private, secure connection with the rest of your Corente network through an exchange of encryption keys and by attaching its digital signature to each message. Each Location gateway is assigned its own encryption key that is stored by every other Location gateway in your Corente network. The Corente SCP also stores this information and maintains its own key. When a tunnel is made between any of these devices, the devices present their key to the other device which checks this key against what is stored. If the key is verified, then a secure tunnel will be established.

If you believe that the security of your network has been compromised or one of your Location gateways has been tampered with, you can force the Location gateway to generate a new encryption key.

Important

You may never need to use this command. It is only provided so that in extreme situations, you can maintain the security of your network.

Follow this procedure to regenerate a new encryption key for a Location gateway.

  1. Right-click on the Location icon (on the map or in the Locations category of the domain directory), highlight Regenerate, and then select Key.

  2. The Generate Key window will appear, as shown below.

    Figure 1.13 Regenerate Location Key Window

    This screenshot shows the Regenerate Location Key window in App Net Manager.

  3. Enter your administrator password in the appropriate field to complete this operation. Remember that you must have administrative power over this Location gateway to regenerate its key.

  4. Click Generate.

Important

This operation will cause a temporary interruption of service. All Corente tunnels that were connected to the Location gateway will automatically be re-established once the key has been regenerated.

When you use the Regenerate Location Key command, the Corente SCP and all of your Locations will receive the new key of the Location gateway to store in their databases. If any Location gateways are not connected to the Corente network when you perform this operation, they will receive the key the next time they contact the Corente SCP.