Setup guide

UNCLASSIFIED
guide may be used as the default keychain. If the user chooses to set a different
keychain as the default, he should ensure that it is secured in the same manner as
given for the login keychain configuration. To change the default keychain:
Chapter 6 -
Future Guidance
1. Start the Keychain Access application.
2. If the drawer showing the user’s keychains is not open, click on the Show
Keychains icon to open it.
3. Click to select the keychain that is to be designated as the new default.
4. Pull down the File menu and select Make keychain “X” Default, where
“X” is the keychain that was selected in step 3.
Additional Notes on Protecting Keychains
For laptops it may be advisable to store all keychains on a portable drive, such as a
USB flash memory key or a portable FireWire drive, if allowed by organizational
policy. The portable USB key can then be removed from the laptop and stored
separately when the keychains are not in use. Anyone attempting to access data on
the machine will need the laptop, the USB device, and the password for the keychain
stored on the USB device, providing an extra layer of protection if the laptop is stolen
or misplaced.
To use this capability, move all keychain files to the USB storage device and
configure the Keychain Access application to use the keychains in the new
location. Remember that the default storage location for keychains is in each user’s
Library/keychains directory, but that the user may have stored keychains
elsewhere as well. To move a keychain to a portable USB drive (or to any new
location):
1. Start the Keychain Access application.
2. If the drawer showing the user’s keychains is not open, click on the Show
Keychains icon to open it.
3. Click to select the keychain that is to be moved.
4. Pull down the Edit menu and select Change password for keychain
“X”…, where X is the keychain being moved.
5. Click on the Details arrow to display more detail about the keychain.
6. Note the Keychain Location and click Cancel.
7. Pull down the File menu and select Delete keychain “X” where X is the
keychain being moved.
8. In the window that appears on the screen, select Delete References. Do not
delete the files; only the references should be deleted here.
9. Open the folder containing the keychain as noted in step 6.
10. Copy this file to the new location, such as a USB keychain drive.
UNCLASSIFIED
85