S/MIME and PKI Dartmouth College PKI Lab
What Is S/MIME? RFC 2633 (S/MIME Version 3)RFC 2633 Extensions to MIME Uses PKI certificates, keys, and cryptography to give standard –Digital signatures –Encryption (for recipient’s eyes only) Mature standard Supported by most popular clients No server support required
S/MIME and Certificates Standard X.509 certificates with proper usage bits and correct address Need certificates for signing and for encryption Can be same certificate with both signing and encryption capabilities Challenge: how to get encryption certificates for other users – from other users –Directories –Address books –Automatic retention