Thoughts on SMIME ?

From: Phil Bailey (pbailey_at_mindspring.com)
Date: 03/10/04

  • Next message: Herb Martin: "Re: Thoughts on SMIME ?"
    Date: Tue, 9 Mar 2004 20:30:12 -0500
    
    

    There are some business needs w/in my company for the encryption of e-mail
    correspodences that go outside of our environment. While we have an internal
    PKI deployment that is fairly successful, we do not intend to offer
    encryption or digitally signing mail until we complete our Exchange 2003
    upgrade. So, internally with Exchange 2003, this is a piece of proverbial
    cake. This would be an extremely limited offering with some tight
    constraints on who is eligible for the ability to send encrypted message. We
    don't want the average user to have this ability. There is also the fact
    that the anti-virus on our mailbox servers will be virtually "blind" to the
    contents of the message or it's attachments.

    My question is, what is the best method of extending this capability to send
    and receive from external business partners without the ugly and unsecure
    practice of our users, exporting their key and sending it to their
    recipients to facilitate decryption.

    My initial thought is to go to a third party trusted root but, I'd like to
    appeal to the forum for the experiences of others.

    Thanks,

    Phil


  • Next message: Herb Martin: "Re: Thoughts on SMIME ?"

    Relevant Pages

    • Re: Suggestions For The Passing of Passphrases
      ... Here is the original post. ... > ointment," the authentication problem. ... send a nonenrypted password by whatever means for an encrypted message? ... the fact of encryption is that the presumption is that it will be ...
      (sci.crypt)
    • Re: newbie needing help on enabling secure mail
      ... how do i "install" the client certificates on the UNIX box? ... Can I simply take my certificates that I use for authentication on my Windows desktop and copy them to the UNIX box, and if so, where do I put them? ... Unless you need really strong encryption and given the fact that a lot of MUAs support it, I would recommend that you go with S/MIME. ... I'm sure that you can come up with something that Procmail can pass the encrypted message to as a filter and receive a decrypted copy of the message and handle appropriately. ...
      (comp.mail.sendmail)
    • Re: Where should I start, what should I ask?
      ... > There is of course a horrible encryption system that I am aware of, ... > each paramemeter so that rather than an encrypted message you create ... If you break it up into 7-character groups (leaving the first character ...
      (sci.crypt)
    • Re: S/MIME
      ... encryption keys. ... from OE to my Outlook 2003 account with the key that was attached to ... You can't send someone any encrypted message unless they have a public key, you have access to that public key, and that public key is trusted. ...
      (microsoft.public.outlook)
    • Re: How NSA access was built into Windows
      ... The EFF is involved in several issues related to encryption and might be ... an organization worth supporting to help keep strong encryption without ... the ability to send me an encrypted message. ...
      (Fedora)