Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


Panel

Table of Contents
maxLevel2



Disclaimer

Your use of this download is governed by Stonebranch’s Terms of Use, available at Stonebranch Integration Hub - Terms of Use.

Overview

This Universal Task provides the capabilities for Encrypting and Decrypting Files using GnuPG.

GnuPG (GNU Privacy Guard) is a free and open-source software tool that provides encryption and digital signature functionality for secure communication and data protection.

Key Features

The Universal Task provides the following key features:

  • Encrypt & Sign Files
  • Decrypt Files incl. verification of signee  
  • Match Pattern support to select files for encryption, decryption, or signing
  • Sign Public Keys with one of the options Sign, Cleartextsign or Detachedsign
  • Import Private Keys
  • Import Public Keys
  • Export Private Keys
  • Export Public Keys
  • List Public Keys
  • List Secret Keys
  • Delete Public Keys
  • Delete Secret Keys
  • Generate a new Key Pair

Version Information

...

Refer to Changelog for version history information.

Requirements

Software Requirements for Universal Template and Universal Task

...


Version Information


Template NameInternal NameVersion
CS GPGut-cs-gpg1.0.4


Refer to Changelog for version history information.

Software Requirements

Software Requirements for Universal Template and Universal Task

This integration requires a Linux or Windows Universal Agent and gpg (GnuPG) Version 2.4.2 or higher installed on the Server where the Universal Agent is installed. 

...

Universal Controller Version 7.1.0.0 and later.

Key Features

The Universal Task provides the following key features:

  • Encrypt & Sign Files
  • Decrypt Files incl. verification of signee  
  • Match Pattern support to select files for encryption, decryption, or signing
  • Sign Public Keys with one of the options Sign, Cleartextsign or Detachedsign
  • Import Private Keys
  • Import Public Keys
  • Export Private Keys
  • Export Public Keys
  • List Public Keys
  • List Secret Keys
  • Delete Public Keys
  • Delete Secret Keys
  • Generate a new Key Pair

Import Universal Template

Note

Data type scripts private_key_default.asc and public_key_default.asc
need to be created first in the controller before you can import the template.

Alternatively, remove the value for the choice fields in the json by setting them to null.

To use the Universal Template, you first must perform the following steps.

  1. This Universal Task requires the Resolvable Credentials feature. Check that the Resolvable Credentials Permitted system property has been set to true.

  2. To import the Universal Template into your Controller, follow the instructions here.

  3. When the files have been imported successfully, refresh the Universal Templates list; the Universal Template will appear on the list.

Configure Universal Task

For a new Universal Task, create a new task, and enter the required input fields.

The following list the different input fields required for a selected Action.

...

Field
Input Type
Value
Type
Description
ActionRequiredEncryptChoice

The following Actions can be selected:

encrypt | decrypt | sign | sign_key | import_private_keys | import_public_keys | export_private_keys | export_public_keys | delete_keys | delete_secret_keys | list_keys | list_secret_keys | generate_key_pair ]

GPG Home DirectoryRequiredDefault: /usr/binTextHome directory of the gpg installation. 
Directory for Files to Encrypt or SignRequired

/Input

TextInput directory for the Files to Encrypt or Sign
Encrypt File PatternRequiredfiles_*Text

Wildcard '*' match is supported on Linux and Windows.

Match Pattern to select the files for encryption are only supported on Linux.

; e.g. files_[1-2].txt is only support on Linux Agents.

Directory for encrypted FilesRequired/EncryptedTextOutput directory for the encrypted Files
Email/ID of the Recipient Public KeyRequired

Email: peter.meyer@yahoo.com

ID: pmeyer

TextEmail/ID of the Recipient Public Key used to encrypt the file
Overwrite Encrypted FilesRequiredTrue | FalseBooleanOverwrite existing Encrypted Files
Encrypt and SignOptionalTrue | FalseBooleanEncrypt and Sign the files using the private key 
Delete After EncryptionOptionalTrue | FalseBooleanDelete Input files in "Directory for Files to Encrypt or Sign" After Encryption. 
Passphrase used for SigningOptional'***'CredentialPassphrase of the Private Key owner used for Signing
Email/ KeyID of the Private Key used for signingOptional

Email: peter.meyer@yahoo.com

ID: pmeyer

TextEmail/ KeyID of the Private Key used for signing

...

Field
Input Type
Value
Type
Description
ActionRequiredDecryptChoice

The following Actions can be selected:

[ encrypt| decrypt | sign | sign_key | import_private_keys | import_public_keys | export_private_keys | export_public_keys | delete_keys | delete_secret_keys | list_keys | list_secret_keys | generate_key_pair ]

GPG Home DirectoryRequiredDefault: /usr/binTextHome directory of the gpg installation. 
Directory for Encrypted FilesRequired

/encrypted

TextInput directory for the Files to Decrypt
Decrypt File PatternRequiredfiles_*Text

Wildcard '*' match is supported on Linux and Windows.

Match Pattern to select the files for decryption are only supported on Linux.

; e.g. files_[1-2].txt is only support on Linux Agents.

Overwrite Decrypted FilesRequiredTrue | FalseBooleanOverwrite existing Decrypted Files
Directory for Decrypted FilesRequired/EncryptedTextOutput directory for the Decrypted Files
Email/ KeyID of the private keyRequired

Email: peter.meyer@yahoo.com

ID: pmeyer

TextEmail/ID of the Recipient Private Key used to decrypt the file
Delete After DecryptionOptionalTrue | FalseBooleanDelete Encrypted files in "Directory for Decrypted Files" After Decryption. 
PassphraseRequired'***'CredentialPassphrase of the Private Key owner used for decryption

...


Field
Input Type
Value
Type
Description
ActionRequiredSignChoice

The following Actions can be selected:

[ encrypt| decrypt | sign | sign_key | import_private_keys | import_public_keys | export_private_keys | export_public_keys | delete_keys | delete_secret_keys | list_keys | list_secret_keys | generate_key_pair ]

GPG Home DirectoryRequiredDefault: /usr/binTextHome directory of the gpg installation. 
Directory for Files to Encrypt or SignRequired

/files

TextInput directory for the Files to Sign
Sign File PatternRequiredfiles_*Text

Wildcard '*' match is supported on Linux and Windows.

Match Pattern to select the files for decryption are support on Linux only.

; e.g. files_[1-2].txt is only support on Linux Agents.

Overwrite Signed FilesRequiredTrue | FalseBooleanOverwrite existing Signed Files
Directory for Signed FilesRequired/signedTextOutput directory for the Signed Files
Signing OptionsRequired

Default: Sign

Choice

[ Sign | Clearsign | Detachsign ]

  • Sign: Signed file includes both the original content and the signature as a single entity;
  • Clearsign: Same as sign but making a cleartext signature;
  • Detachsign: Separate signature file with suffix *.sig
Local User for SigningRequired

Email: peter.meyer@yahoo.com

ID: pmeyer

TextEmail/ID of the Recipient Private Key used to Sign the file
Delete After SignOptionalTrue | FalseBooleanDelete Signed files in "Directory for Signed Files" After Signing. 
PassphraseRequired'***'CredentialPassphrase of the Private Key owner used for signing







...