Creating PGP Keys {#keys-pgp-create}
====================================

You can use any OpenPGP-compliant software to generate Pretty Good Privacy (PGP) keys. The key that you generate must be an RSA key. These free OpenPGP solutions are available:

* [Bouncy Castle](http://www.bouncycastle.org/ "")
* [GPG4WIN](http://www.gpg4win.org "")

`Cybersource` recommends that you follow these guidelines:

* Make the key at least 2048 bits long.
* Store the private key in an encrypted format to protect it from unauthorized use.
* Back up the private key in case of disaster.

Place the backup of the private key on removable media, and lock it in secure storage.  
`Cybersource` does not receive a copy of your private key and cannot decrypt files that are encrypted with your public key. After you create a public/private key pair, add the public key to the `Business Center` as described in the next section.
