Internet E-mail Security

Issues and standards for securing Internet e-mail

Laurence Lundblade QUALCOMM Inc., Eudora Division

The following are slides from a presentation on e-mail security, May 1997


Common Services


Transmission of a Message

Mail clients and servers connected via SMTP and POP


Message Standards Reviewed


Four Components


Diagram of Four Components

shows client, message, certificate


Trust Management


Trust Management: The Problem

Failure to validate credentials/certificate results in:


Trust Management: Public Trust


Trust Management: Enterprise


Trust Management: Web


Trust Management: Direct Trust


Trust Management: PGP


Trust Management: S/MIME


Trust Management: Examples


Trust Management: Issues


Certificates


Certificates: PGP


Certificates: X.509 for S/MIME


Certificates: SPKI certs

Certificates: Issues


Algorithms


Algorithms: PGP & PGP/MIME


Algorithms: S/MIME


Algorithms: Issues


Message Formats: General


Message Formats:


Message Formats: MIME Uses


Message Formats: Picture

Shows MIME and security encapsulation


Message Formats: Clear-signing


Message Formats: PGP


Message Formats: PGP/MIME


Message Formats: S/MIME


Message Formats: Issues