Main » 2011 » Март » 16 » Personal email certificates sign and encrypt mail to mail
12:05
Personal email certificates sign and encrypt mail to mail
Some may ask - what actually encrypt my mail to me, they say, nothing to hide. Why sign messages - from my drawer so no one can send a message. Yes, and it's difficult, to put special tools to get the keys, etc.
And there's nothing complicated, here's an example of how to get a certificate and configure Mail to send signed and encrypted emails.


1. Obtain a certificate of mailing.


To http://www.instantssl.com can get a free certificate from comodo (Free secure email certificate). Clicking on this link, we see that it costs $ 0.00 - and happily click Get it free now.

Of us will need to fill out a short form which will need to specify the name - this information will be displayed in the signature certificate.


Notice Revocation password - after obtaining a certificate to re-get it will not work. For re-issuance of the certificate required review previously issued - for this purpose and need Revocation password - so do not make it easy to get your certificate is not revoked someone for you.

Filling in the questionnaire are waiting for letters from Comodo (got about a dozen certificates - comes in a range from 10 minutes to days).

In a letter to click on the big red link. Safari immediately pick up the certificate, and save it.


2. Install the certificate


Starting a certificate and open keychains - will need to enter your administrator password.
The certificate is ready.

This way, later you can export your public key (export - file format - a certificate).

3. Checking


Start Mail, create a letter-box for which you have received a certificate.

Notice the two icons in the string "From".

Asterisk with a check mark indicates that the message is signed. Together with the signature of the beneficiary will receive, and your public key, and he will be able to send you messages, encrypted them.

Castle says that we are sending a message to whose certificate we already have - so the letter can be encrypted. Certificates are sent letters. Enough to exchange blank signed letters to have a certificate to each other. Well, or put your certificate anywhere. I for example can take with my page - http://www.feanor.ws/feanor.cer.

When sending a letter keychain will ask us - whether to allow use of this certificate. If you use a mail and access to a car, too, do not get just - click to allow always, or every time will have to enter an administrator password.

That's actually what happened. Please note that the subject line is not encrypted.

4. Conclusion

Here is the certificate - verify who sent and at what addresses.

Tricky, and trying to get a certificate at the same address, and we see:

UPDATE2: By the way, get a certificate from another machine with another browser - it does not, throw an error.
Add a contact in your address book, we see that we have his public key and that we can send him an encrypted email (all the exact same mnogokonechnaya Star tick).


UPDATE: This method does not confirm the identity of doubt - even in the certificate shows that Persona not validated. Free product after all.
But still, it's better than nothing;)
Views: 391 | Added by: w1zard | Rating: 0.0/0
Total comments: 0
Имя *:
Email *:
Код *: