SlideShare a Scribd company logo
E-mail Security:
S/MIME and PGP
Email security protocols
 The two schemes that provide security services on email are:
 S/MIME (Secure/ Multipurpose Internet Mail Extension)
 PGP (Pretty Good Privacy)
Standard for email service: RFC 822
 Describes the standard for e-mail format.
 Overall structure is very simple
 Message = Envelope + Content
- Envelope: Whatever information is required to accomplish
transmission and delivery
- Content: The message body
Limitations of RFC 822
• Cannot be used to transmit:
– Executable files
– Images
– Audio files, etc.
• Text character set limited to ASCII.
• Transfer size is also limited.
MIME (Multipurpose Internet Mail Extension)
• Extension to RFC 822 framework
• MIME specification includes following elements:
– Defines new message header fields
– A number of content format are there to support
multimedia email
– Content Transfer encodings are defined
S/MIME
S/MIME (Secure/MIME)
 Originally developed by RSA Data Security Inc.
 Build on top two Public Key Cryptography Standards:
 "PKCS #7: Cryptographic Message Syntax”
 "PKCS #10: Certification Request Syntax“
 Commercially very successful.
 Application not limited to e-mail. Any protocol that
transports MIME objects can leverage these services
such as HTTP.
Security Services
• Digital Signature
Message origin
Authentication
• Digital Signature
Message
Integrity
• Encryption
Message
Confidentiality
• Digital Signature
Non repudiation
of Origin
S/MIME services
• enveloped data (application/pkcs7-mime; smime-type = enveloped-data)
– standard digital envelop
• signed data (application/pkcs7-mime; smime-type = signed-data)
– standard digital signature
– content + signature is encoded using base64 encoding
• clear-signed data (multipart/signed)
– standard digital signature
– only the signature is encoded using base64
– recipient without S/MIME capability can read the message
but cannot verify the signature
• signed and enveloped data
– signed and encrypted items may be nested in any order
S/MIME functions (Signed Data)
 Select a message digest algorithm (SHA or MD5)
 Compute message digest of the content to be signed.
 Sign message digest with signer’s private key.
 Prepare a block called SignerInfo that contains signer’s public
key certificate, an identifier for Message Digest algorithm, an
identifier for algorithm used to sign message digest.

More Related Content

PDF
M.FLORENCE DAYANA/electronic mail security.pdf
PDF
Electronic mail security
PPT
Celebrity Cricket League 2016 - http://ccl5.com/
PPT
E-mail Security in Network Security NS5
PPT
ch05.ppt
PPT
Chapter 5
PPTX
Email security
PDF
BAIT1103 Chapter 5
M.FLORENCE DAYANA/electronic mail security.pdf
Electronic mail security
Celebrity Cricket League 2016 - http://ccl5.com/
E-mail Security in Network Security NS5
ch05.ppt
Chapter 5
Email security
BAIT1103 Chapter 5

Similar to E-mail Security.ppt (20)

PPT
Chapter 5Electronic MailElectronic Mail.ppt
PPT
types of attacks on electronic mail security
PDF
Lec 8.pptx.pdf
DOCX
S/MIME
PPTX
S/MIME & E-mail Security (Network Security)
PPT
pretty good privacy class hrtyetywetwetyewty
PPT
CRYPTOGRAPHY_ENGG_CSE_III_YEAR_PGP_CNS.ppt
PDF
Network Security CS2
PPT
computer netwok security Pretty Good Privacy PGP.ppt
PDF
CNS - Unit v
PPTX
CRYPTOGRAPHY AND NETWORK SECURITY- E-Mail Security
PPT
S-MIMEemail-security.ppt
PPT
Email Security : PGP & SMIME
PPTX
Email sec11
PDF
R.Deviga II-M.Sc computer science
PDF
R.Deviga II-M.Sc computer science
PPTX
module 4_7th sem_ Electronic Mail Security.pptx
PDF
CS6701 CRYPTOGRAPHY AND NETWORK SECURITY
PPT
Pgp smime
PDF
Email security presentation
Chapter 5Electronic MailElectronic Mail.ppt
types of attacks on electronic mail security
Lec 8.pptx.pdf
S/MIME
S/MIME & E-mail Security (Network Security)
pretty good privacy class hrtyetywetwetyewty
CRYPTOGRAPHY_ENGG_CSE_III_YEAR_PGP_CNS.ppt
Network Security CS2
computer netwok security Pretty Good Privacy PGP.ppt
CNS - Unit v
CRYPTOGRAPHY AND NETWORK SECURITY- E-Mail Security
S-MIMEemail-security.ppt
Email Security : PGP & SMIME
Email sec11
R.Deviga II-M.Sc computer science
R.Deviga II-M.Sc computer science
module 4_7th sem_ Electronic Mail Security.pptx
CS6701 CRYPTOGRAPHY AND NETWORK SECURITY
Pgp smime
Email security presentation
Ad

Recently uploaded (20)

PPTX
PPH.pptx obstetrics and gynecology in nursing
PDF
Anesthesia in Laparoscopic Surgery in India
PPTX
Cell Structure & Organelles in detailed.
PDF
Origin of periodic table-Mendeleev’s Periodic-Modern Periodic table
PPTX
Pharmacology of Heart Failure /Pharmacotherapy of CHF
PDF
Complications of Minimal Access Surgery at WLH
PDF
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
PDF
VCE English Exam - Section C Student Revision Booklet
PPTX
Institutional Correction lecture only . . .
PDF
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
PPTX
Introduction to Child Health Nursing – Unit I | Child Health Nursing I | B.Sc...
PDF
Business Ethics Teaching Materials for college
PPTX
The Healthy Child – Unit II | Child Health Nursing I | B.Sc Nursing 5th Semester
PDF
Mark Klimek Lecture Notes_240423 revision books _173037.pdf
PDF
Classroom Observation Tools for Teachers
PDF
Supply Chain Operations Speaking Notes -ICLT Program
PPTX
Pharma ospi slides which help in ospi learning
PDF
RMMM.pdf make it easy to upload and study
PDF
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
PPTX
PPT- ENG7_QUARTER1_LESSON1_WEEK1. IMAGERY -DESCRIPTIONS pptx.pptx
PPH.pptx obstetrics and gynecology in nursing
Anesthesia in Laparoscopic Surgery in India
Cell Structure & Organelles in detailed.
Origin of periodic table-Mendeleev’s Periodic-Modern Periodic table
Pharmacology of Heart Failure /Pharmacotherapy of CHF
Complications of Minimal Access Surgery at WLH
Chapter 2 Heredity, Prenatal Development, and Birth.pdf
VCE English Exam - Section C Student Revision Booklet
Institutional Correction lecture only . . .
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
Introduction to Child Health Nursing – Unit I | Child Health Nursing I | B.Sc...
Business Ethics Teaching Materials for college
The Healthy Child – Unit II | Child Health Nursing I | B.Sc Nursing 5th Semester
Mark Klimek Lecture Notes_240423 revision books _173037.pdf
Classroom Observation Tools for Teachers
Supply Chain Operations Speaking Notes -ICLT Program
Pharma ospi slides which help in ospi learning
RMMM.pdf make it easy to upload and study
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
PPT- ENG7_QUARTER1_LESSON1_WEEK1. IMAGERY -DESCRIPTIONS pptx.pptx
Ad

E-mail Security.ppt

  • 2. Email security protocols  The two schemes that provide security services on email are:  S/MIME (Secure/ Multipurpose Internet Mail Extension)  PGP (Pretty Good Privacy)
  • 3. Standard for email service: RFC 822  Describes the standard for e-mail format.  Overall structure is very simple  Message = Envelope + Content - Envelope: Whatever information is required to accomplish transmission and delivery - Content: The message body
  • 4. Limitations of RFC 822 • Cannot be used to transmit: – Executable files – Images – Audio files, etc. • Text character set limited to ASCII. • Transfer size is also limited.
  • 5. MIME (Multipurpose Internet Mail Extension) • Extension to RFC 822 framework • MIME specification includes following elements: – Defines new message header fields – A number of content format are there to support multimedia email – Content Transfer encodings are defined
  • 7. S/MIME (Secure/MIME)  Originally developed by RSA Data Security Inc.  Build on top two Public Key Cryptography Standards:  "PKCS #7: Cryptographic Message Syntax”  "PKCS #10: Certification Request Syntax“  Commercially very successful.  Application not limited to e-mail. Any protocol that transports MIME objects can leverage these services such as HTTP.
  • 8. Security Services • Digital Signature Message origin Authentication • Digital Signature Message Integrity • Encryption Message Confidentiality • Digital Signature Non repudiation of Origin
  • 9. S/MIME services • enveloped data (application/pkcs7-mime; smime-type = enveloped-data) – standard digital envelop • signed data (application/pkcs7-mime; smime-type = signed-data) – standard digital signature – content + signature is encoded using base64 encoding • clear-signed data (multipart/signed) – standard digital signature – only the signature is encoded using base64 – recipient without S/MIME capability can read the message but cannot verify the signature • signed and enveloped data – signed and encrypted items may be nested in any order
  • 10. S/MIME functions (Signed Data)  Select a message digest algorithm (SHA or MD5)  Compute message digest of the content to be signed.  Sign message digest with signer’s private key.  Prepare a block called SignerInfo that contains signer’s public key certificate, an identifier for Message Digest algorithm, an identifier for algorithm used to sign message digest.