It is currently not possible to generate a key. Instructions for generating an electronic signature key

It is currently not possible to generate a key.  Instructions for generating an electronic signature key
It is currently not possible to generate a key. Instructions for generating an electronic signature key

Despite the constant development of technology, Internet systems cannot fully insure against any overlays. Errors may occur at any time during operation. This article contains answers to FAQ for errors that are difficult to solve.

Mistakes

As a rule, the matter does not end with one systemic defect. There is a small list of inaccuracies that a VTB client may encounter at any time.

How to decide?What's happened?What is needed for this?
On one's ownPrivate key file not set (wrong password);Internet connection
CIPF initialization errors;
Error creating key carrier CIPF;
Errors in decoding the secret key;
Error reading key container.
With the help of VTB specialistsInternal error, please try the operation later;Appeal to the VTB office with a Russian passport.
The user is not connected to any client;
Authentication error;
The account is blocked.

For each of the above points, there is a solution that can be used by all VTB customers who are faced with a specific problem. So, how to fix different kinds of errors?

Private key file not set or password incorrect

This problem occurs:

  • When entering a password on the login page. The occurrence of a problem on this stage indicates that an incorrect password may indeed have been entered. It can be changed, after this procedure, you must enter a login and New Password.

To solve it, it is recommended to check the correctness of the entered password at the entrance: language (RU / ENG), letter case. It should be remembered that the code for decrypting the key is not recoverable. You can change or change the password for accessing the VTB-Online system.

  • After pressing the "Login" button. The error that occurred at this stage indicates that the private key files are corrupted.

If a saved copy of the key is available, then it will be possible to log into the system with its help. Additionally, it is recommended to exit Personal Area using browser Internet Explorer versions from 10.0, which should be run in "Administrator" mode.

  • If backup copy missing or not working, the client can request new certificate and save it additionally to another storage medium: USB flash drive, removable disk.

For its operation in the Personal Account, the certificate must be activated at the VTB branch by providing an act of entering the Key Certificate at the place where the accounts were opened. As a result, the error "Secret key file is not set" VTB service disappears.

Error when initializing CIPF

This problem occurs if the directory field of the CIPF key carrier contains the path to the directory that does not contain the "keys" folder and a bunch of files: kek.opq, mk.db3, masks.db3, rand.opq, request.pem. At the same time, an error in accessing an external system also takes place.

How can this problem be dealt with? The main thing is to make another direction in the general directory, where the "keys" folder and all the above files will be located. If all files are stored on removable media, then the client must specify the direction to it.

Error when creating a CIPF key carrier

This error can occur for two reasons:

Reason 1: non-existent path. The occurrence of this error informs that the path leads to a directory that does not exist on the system or media removed from the device. To solve this problem, you need to look at the direction on the line "Key CIPF directory", which should lead to an empty directory.

Reason 2: The path is write-protected. First, the attributes set in the directory properties are checked, to do this, follow the instructions:

  1. Click on the desired folder and click select "Tools", "Properties" tab.
  2. Go to the "General" tab and select the "Attributes" section.
  3. Look at the read-only attribute line and make sure there is no marker next to the line. It can be in the form of a check mark or a green square. If the marker is present, then it must be removed, leaving the square empty.
  4. Give consent to all pop-up system messages and confirm the changes by clicking on the "OK" button.
  5. Update your personal account by pressing "Ctrl + F5" on the keyboard and specify the direction to the "CIPF Key Carrier Catalog" again.

If it is impossible to remove the "Attribute", that is, the actual lack of access to the administrator's functions, you should request a certificate for a flash drive or request the rights of the system manager.

Internal error, please try again later

The option when the operation being performed is temporarily unavailable also takes place. This problem occurs when accounts are duplicated. The only solution to this is to contact the VTB branch to specialists.

Error decoding private key

The problem usually occurs when the certificate is saved to the keyed media. It is possible that the password for decrypting the key is entered incorrectly. To solve it, you need to check the keyboard language, case, correct input. Alternatively, you can write the password in the Russian layout. If you still forgot it, then you can request a new certificate and save it to a clean storage medium.

Errors may appear when you click on the floppy disk icon. In this case, you need to check the entire structure of the files in the directory where the certificate is saved. It should contain the following names: "masks.db3", "rand.opg", "kek.opg", "mk.db3", "request.pem" and the "keys" folder with the file "00000001.key". If the name of the documents in the folder is written differently, then you should rename it to the correct one and check if the problem has disappeared.


The user is not connected to any client

It is written at the entrance to the Personal Account, if the client's account is blocked in the VTB client bank. To make a decision, you need to go to a convenient VTB office with a passport.

Authentication error

This information appears on the screen when trying to authorize in the Personal Account of a VTB client. If such a problem is present, then with a passport it is necessary to contact banking specialists at the VTB office.

The account is blocked

The user can act different ways, depending on the information on the screen. If an unlock time is specified, then you should wait for this particular time. If you are advised to contact VTB technical support, then you should do just that.

If the client bank has been blocked and nothing else is indicated, then in this case the client must personally contact the VTB branch with a document that confirms the person’s identity, where managers will give recommendations or unblock closed accounts.

Error reading key container

Occurs when there is no certificate on the media. To fix it, you need to check the entire directory structure, the shared folder should contain the following documents: "masks.db3", "rand.opg", "kek.opg", "mk.db3", "request.pem" and "keys", "cert", "CA" folders. If some folders are missing, then go to the VTB personal account and resave the certificate. How to do it? In the CIPF key carrier directory field, specify the correct path to the root directory with the necessary documents and click the Save button. Then you can try logging in again.

What is the CIPF key carrier catalog?

CIPF is a service that provides electronic encryption of documents. This is usually used to get a signature important information or, conversely, sending documents. Where can I get the catalog of the CIPF key carrier? It's actually a place to save electronic keys, in this situation, the keys of the VTB client bank are stored. Store it, preferably on a separate medium: flash card, disk or internal storage.

Instructions for creating cryptographic keys

How to create a secret key in VTB client bank? To begin with, you enter the client bank using a link; at the initial login, the system may offer the installation of an ActiveX control element to protect information. After installing the component, you need to set up your personal account to register the organization in the VTB banking system.

For creating secret keys you need to get a certificate:

  1. Log in to the online office;
  2. The reader (password generator) can generate a login code if used by the client. If it is, then you need to press the "B" button on the device and the automatic generator will generate a code.
  3. An SMS with a one-time code is sent to the phone number associated with the VTB personal account.
  4. The password for the first login must be changed in the settings from temporary to permanent and more secure.

In LC VTB, you can create a certificate. Storage space must be found in advance on a flash drive or computer.

Please note that only one certificate should be stored in one folder, without any other files remaining. Otherwise, you will get an error related to the VTB client bank. To do this, on the "Request a new certificate" tab, you must specify the path to the folder in which the keys are stored.

When a message from the computer "Initializing the generator" appears, you need to move the mouse in random order.

When completed, a new decryption input window will appear, prompting you to enter a new secret key password. It must be remembered, attention is also drawn to the case of letters and the language of the keyboard.
Next, the creation of the certificate is completed. It will be available in the "Requests" section, where it will transfer the VTB client automatically. After receiving the certificate, a message appears about sending data to the bank.

VTB key generation

To create a unique key, you need to install the Quik VTB program (publisher Step Up inc), which is needed to create secret keys.

  1. We launch the application on a PC and at the initial stage, the application offers us to show the path to the storage location of the codes, the client name and password with which we will open the service. If the client password specified at this stage is lost, the crypto key is created again and from the very beginning, since this password is not recoverable.
  2. The second step is to confirm the password.
  3. In the next window, the parameters of the created key are checked. If everything is correct, click the "Next" button.
  4. Then a message about entering random numbers appears. The data entered in the line does not need to be remembered. Finish with the "Install" button.

After creation, you can click the "Finish" button and complete the work with crypto keys. Now we are sending the e-key document for registration on email address: [email protected], but for safety, a file called sekring.txk is not sent. The letter contains the full details of the owner, the agreement number specified in the notice, clause 2, and the pubring.txk file.

We are waiting for the bank's response, print out the application from the response letter and put signatures at any VTB office in the presence of a banking specialist.



If the VTB client forgot the secret key password?

Unfortunately, it is not possible to reissue or change the password for the certificate in the VTB online client. To work, you need to re-save the document itself, then the electronic keys will be updated.

When problems arise in the VTB client bank, not all users can cope with the solution on their own. And in such cases, you can contact for advice on the number hotline V technical support to operators, give your data for authorization and calmly use the solutions of specialists.

And push the button "Further".

And push the button "Install".

After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

Place a check mark next to "Installing ActiveX Components" and press the button "Install".

After completing the Wizard, log in from the shortcut that will appear on the desktop.

After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

Place a check mark next to "Installing ActiveX Components" and press the button "Install".

After completing the Wizard, log in from the shortcut that will appear on the desktop.

If you are using eToken:


After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

Place a check mark next to "Installing ActiveX Components" and press the button "Install".

After completing the Wizard, log in from the shortcut that will appear on the desktop.

Errors when generating new keys

Error (Code: 128) Error on initialization cryptoengine for MessagePro

    After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

    Place a check mark next to "Installing ActiveX Components" and press the button "Install".

    After completing the Wizard, log in from the shortcut that will appear on the desktop.

After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

Place a check mark next to "Installing ActiveX Components" and press the button "Install".

After completing the Wizard, log in from the shortcut that will appear on the desktop.

Errors when working in the Client-Bank system

Files are not uploaded to the Client-Bank system or files are not uploaded from the system (when importing documents, exporting statements, attaching files to an arbitrary document in the Bank, etc.)

    After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

    Place a check mark next to "Installing ActiveX Components" and press the button "Install".

    After completing the Wizard, log in from the shortcut that will appear on the desktop.

After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

Place a check mark next to "Installing ActiveX Components" and press the button "Install".

After completing the Wizard, log in from the shortcut that will appear on the desktop.

After starting, select from the list the city in which your accounts are opened, check the box next to "Installing / reinstalling the system" and press the button "Further".

Place a check mark next to "Installing ActiveX Components" and press the button "Install".

After completing the Wizard, log in from the shortcut that will appear on the desktop.

  • Check the functionality of your Internet connection.
  • Check the version of your operating system. The page of the Client-Bank system will not be displayed on operating system Windows XP Service Pack 2 and below, and on Windows Server 2003 without the latest updates installed.
  • In Internet Explorer go to "Tools" → "Internet Options" → "Advanced". In the window that opens, check the boxes next to the items containing the abbreviation " TLS" and uncheck the boxes next to the items containing " SSL».
  • Press key combination Ctrl+F5. The page will refresh and clear the cache.
  • Check the spelling of the address of the Client-Bank system page. In the address bar, delete all information after .ru and press Enter.

Check that you entered your username and password correctly. We recommend paying attention to the input options: the current input language and pressing the Caps Lock key. Try entering the password in text document, check it visually and copy it into the password field in the system.

This error may appear for the following reasons:

  • ES keys expired.
  • The term of office of the director/general has expired. director, indicated in the bank card of the organization.
  • You have not yet completed the initial generation of new keys.
  • You have just done the initial generation of new keys and clicked the " Further". At this point, the keys are not yet ready. To make keys, you need to print out an application for the production of a certificate. public key and submit it to the Bank's office serving your accounts.

To be sure detailed information For this error, please contact technical support.

Make sure that in the settings of subscribers' key carriers you have specified the path only to the directory with secret keys. All other lines must be empty:


  • Make sure you are logged in with Internet browser explorer.
  • Add the website address of the Client-Bank system to the list of websites operating in compatibility mode.
  • In Internet Explorer, click on the " Service» in the upper bar (if there are no buttons, then press the key alt on the keyboard until a strip appears with the buttons " File», « Edit», « View" etc.).
  • Next select " Compatibility View Options».
  • In the window that opens, enter top line Website address website and press the buttons Add" And " close».
  • Restart your browser for the changes to take effect.
  • In Internet Explorer, press the key combination " Ctrl+Shift+Delete". In the window that opens, check the boxes next to " Temporary Internet Files" And " Cookies ” and press the button “ Delete».
  • Perform a general reset of your browser settings.
  • close everything Internet windows Explorer and go to " Control Panel» → « Browser PropertiesNetworks and the Internet»).
  • Additionally” and press the button “ Reset».
  • Delete Personal settings ” and press the button “ Reset».

Windows Vista, Windows 7:

  • Start».
  • Select " Control Panel» → « Browser Properties" (may be in the " Networks and the Internet»).
  • In the window that opens, go to the " Additionally” and press the button “ Reset».
  • In the window that opens, do not check the box " Delete personal settings” and press the button “ Reset».
  • After the reset is complete, restart your computer for the changes to take effect.

Windows 8-10:

  • Start» right click mice.
  • Select " Control Panel» → « Browser Properties" (may be in the " Networks and the Internet»).
  • In the window that opens, go to the " Additionally” and press the button “ Reset».
  • In the window that opens, do not check the box " Delete personal settings” and press the button “ Reset».
  • After the reset is complete, restart your computer for the changes to take effect.

Errors when generating new keys



This error is due to the fact that the system cannot access the selected key storage location.

If you did not receive a USB device (eToken) at the bank office:

  • When filling in the generation parameters in the field " Key storage location» indicate « disk drive". In field " Catalog» Specify a place to store the keys. We strongly recommend that, in order to avoid errors when creating keys, DO NOT USE for storing keys system disk (local disk C:\) and the folders stored on it (including the Desktop, Documents, etc.).
  • Check if the directory that was chosen to store the secret keys in the section is writable. Key storage location».
  • Check if the Flash media you are using is correct.

If you are using eToken:


Errors when working in the Bank-Client system

Windows Vista, Windows 7:

  • Close all Internet Explorer windows and go to the " Start».
  • Select " Control Panel» → « Browser Properties" (may be in the " Networks and the Internet»).
  • In the window that opens, go to the " Additionally” and press the button “ Reset».
  • In the window that opens, do not check the box " Delete personal settings” and press the button “ Reset».
  • After the reset is complete, restart your computer for the changes to take effect.

Windows 8-10:

  • Close all Internet Explorer windows and click the " Start» with the right mouse button.
  • Select " Control Panel» → « Browser Properties" (may be in the " Networks and the Internet»).
  • In the window that opens, go to the " Additionally” and press the button “ Reset».
  • In the window that opens, do not check the box " Delete personal settings” and press the button “ Reset».
  • After the reset is complete, restart your computer for the changes to take effect.

Creating and working with ES keys is not supported in browsers Chrome And firefox (version 52.0 and up), we recommend to use in work Internet explorer.

Key Certificate electronic signature(EP) has a limited validity period of one year. To continue using the ES, you must create and activate a new key. This can be done in two ways:

  • on your own in « » (provided that the term of the previously valid ES key has not yet expired)

or

  • in the offices of the company "FINAM" (central office or additional offices in Moscow, as well as in the offices of regional representatives).

For self-creation(generate) a new key, you need to follow a few simple steps:

1. Section "Service" / "Electronic signature" / " " and press the button "Create".

2.a. When using a browser Internet explorer:

2.b. When using a browser Firefox :

In the window that opens, select the type of key medium - "USB or HDD", then select the folder where you want to save the created ES key (and the ES Certificate) - we recommend creating a new empty folder. Click the button "Start".

After pressing the button "Start" ES Certificate will be automatically generated. If the key is generated successfully, the corresponding information window will open - click the "OK" button.


Next, a window will open in which you need to select a folder for accepting the certificate - the new certificate should be saved to the new (empty!) folder that was created in the previous step. Click the button "Accept" to continue the procedure and accept the certificate.


At the next step, a request to activate a new ES certificate will open, in which you need to click the button "Activate".

You may need to run the applet - click the " Run".


In the window that opens, select the folder where you want to save the created ES key (and the ES Certificate) - we recommend creating a new empty folder.


After pressing the button "OK" a window will open to initialize the generation of random numbers needed to create the key. Press the buttons on the keyboard and move the mouse pointer until the indicator bar is full.