22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

6.2.9 Secure messaging with S/MIME<br />

268 Lotus Security Handbook<br />

S/MIME, Secure Multipurpose Internet Mail Extension, is an e-mail security<br />

technology developed by RSA for encrypting and digitally signing e-mail<br />

messages.<br />

The S/MIME working group has completed five proposed standards that<br />

comprise the S/MIME version 3 specification. These are as follows:<br />

► Cryptographic Message Syntax (draft-ietf-smime-cms;<br />

ftp://ftp.ietf.org/rfc/rfc2630.txt)<br />

► S/MIME Version 3 Message Specification (draft-ietf-smime-msg;<br />

ftp://ftp.ietf.org/rfc/rfc2633.txt)<br />

► S/MIME Version 3 Certificate Handling (draft-ietf-smime-cert;<br />

ftp://ftp.ietf.org/rfc/rfc2632.txt)<br />

► Certificate Request Syntax (draft-ietf-smime-crs;<br />

http://www.ietf.org/proceedings/98dec/I-D/draft-ietf-smime-crs-00.txt)<br />

► Enhanced Security Services for S/MIME (draft-ietf-ietf-ess;<br />

ftp://ftp.ietf.org/rfc/rfc2634.txt)<br />

Lotus Notes and Domino 6 fully support S/MIMEv3.<br />

Encrypting a message takes the entire content of a message or just certain<br />

MIME parts and runs them through an encryption algorithm that uses the public<br />

key of the recipient. S/MIME uses a public-key algorithm for key exchange and<br />

for digital signatures, recommending two symmetric encryption algorithms:<br />

Triple-DES, and RC2. The adjustable key size of the RC2 algorithm makes it<br />

especially useful for applications intended for export outside the US where RSA<br />

is the required public-key algorithm.<br />

How S/MIME works<br />

In this section we take a closer look at how S/MIME works. The goal is to help<br />

you understand how Notes and Domino 6 implement and support S/MIME.<br />

S/MIME offers users the following basic features:<br />

► Encryption for message privacy<br />

► Tamper detection<br />

► Signing - Authentication of the sender with digital signatures<br />

► Interoperability with other S/MIME-compliant software<br />

► Seamless integration into Netscape Messenger<br />

► Cross-platform messaging

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!