Unit 6

Electronic Mail Security

fit


Topics

  1. Pretty Good Privacy (PGP)
  2. S/MIME
  3. Domain Keys Identified Mail (DKIM)

1. Pretty Good Privacy (PGP)

fit


2. S/MIME (Secure MIME)


S/MIME Functions

Create a message digest to be used in forming a digital signature.

Encrypt message digest to form a digital signature.

Encrypt session key for transmission with a message.

Encrypt message for transmission with a one-time session key.

Create a message authentication code.


3. Domain Keys Identified Mail (DKIM)

DomainKeys Identified Mail (DKIM) is a specification for cryptographically signing e-mail messages, permitting a signing domain to claim responsibility for a message in the mail stream.


Internet Mail Architecture


fit


Threats in email architecture


DKIM Strategy

DKIM allows good senders to prove that they did send a particular message and to prevent forgers from masquerading as good senders.


DKIM Functional Flow

fit inline