Keyboard shortcuts

Press ← or → to navigate between chapters

Press S or / to search in the book

Press ? to show this help

Press Esc to hide this help

Key Command

The ppk key command group generates, verifies, and packages recovery keys. This manual covers:

  • key generate
  • key check
  • key export-recovery-kit
  • key verify-recovery-kit
  • key print-recovery

Standard key directory contains:

  • ppk.pub: public key used for backup
  • ppk.key: private key used for restore
  • ppk.pwd: passphrase file—only when you explicitly choose file-based passphrases
  • manifest.json: non-sensitive metadata

Backup nodes keep only the public key; restore nodes keep the private key and passphrase material. Prefer --key-home for the standard key directory; legacy backup_recipient.pub / backup_recipient.key remain supported.