了解安全电子邮件

发布于 2024-07-25 00:57:20 字数 289 浏览 12 评论 0 原文

我有一个关于使用 SSL 保护电子邮件的问题。

如果我获得 SSL 证书来保护我的电子邮件,这意味着我的邮件客户端和邮件服务器之间的连接将被加密。 因此任何监听的人都无法查看我的电子邮件或用户名和密码。 但是邮件服务器和目标邮件服务器之间会发生什么? 以及收件人的邮件客户端之间的关系? 如果收件人不使用 SSL,电子邮件及其内容仍然安全吗?

另外,出于兴趣,人们仅从内部网络“监听”(使用数据包嗅探器的人)是否存在危险,或者云中的人们是否存在监听的危险?

谢谢,

迈克尔

I've got a question about securing emails with SSL.

If I get an SSL certificate to secure my email, that would mean that the connection between my mail client and my mail server will be encrypted. So anyone listening in couldn't view my emails or username and password. But what happens between the mail server and the destination mail server? And between there and the recipient's mail client? If the reciepient isn't using SSL, will the email and it's contents still be secure?

Also, out of interest, is the danger of people "listening in" just from your internal network (people using packet sniffers) or is there a danger of people out in the cloud listening in?

Thanks,

Michael

如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。

扫码二维码加入Web技术交流群

发布评论

需要 登录 才能够评论, 你可以免费 注册 一个本站的账号。

评论(3

余生再见 2024-08-01 00:57:20

这仅保护您的邮件客户端和邮件服务器之间的连接/通信。

因此,内部网络上的人无法嗅探(至少不能以明文方式)您的邮件。

邮件服务器从您的服务器到收件人的服务器之间的传输如何发生取决于它们的配置。

基本上,您无法避免某些邮件服务器操作员读取您的邮件,或者 NSA 读取您的邮件的风险,等等...

保护您的邮件免受恶意邮件服务器操作员攻击的唯一方法是使用某些加密技术来加密您的邮件公钥加密系统(例如 PGP)。

This only secures the connection/communication between your mail client and the mail server.

So people on your internal network can't sniff (at least not in clear text) your mail.

How the transport between the mail server from your server to the server of the recipient happens depends on their configuration.

Basically you can't avoid the risk of some mail server operator reading your mail, or the NSA reading it, and so on...

The only thing to secure your mail against a malicious mail server operator would be to encrypt your mail with some Public-key cryptography system (e.g. PGP).

抱着落日 2024-08-01 00:57:20

只有您的客户端(如果配置正确)和服务器之间的连接将被加密(对于收件人端也是如此),一旦电子邮件离开您的服务器前往收件人邮件服务器,它将对所有人开放。

IE。 您(使用 SSL)-> 安全-> 您的服务器 -> 不安全-> 互联网-> 不安全-> 接收者服务器 -> 安全-> 收件人(使用 SSL)。

为了确保安全传送,电子邮件需要进行端到端加密(即电子邮件的实际内容 - 而不仅仅是发送到服务器或从服务器传送)。 这可以通过几种不同的机制来完成(请参阅 Wikipedia 获取列表)之一更常见的是使用 PGP 发送电子邮件(请参阅 google 了解更多)。

存在人们在内部网络和云中监听的风险,我不确定这两种可能性,但我想说,内部网络通常是“监听者”更容易发生的位置。

Only the connection between your client (if correctly configured) and your server will be encrypted (same for the recipients end), once the email leaves your server on its way to your recipients mailserver it will be open for all to see.

Ie. You (using SSL) -> SECURE -> Your Server -> UNSECURE -> Internet -> UNSECURE -> Recipient's Server -> SECURE -> Recipient (using SSL).

To ensure secure delivery the email needs to be encrypted end-to-end (ie. the actual contents of the email - rather than just the delivery to/from the server). This can be done through several differnt mechanism (see Wikipedia for a list) one of the more common ones is using PGP for email (see google for more).

There is a risk of people listening in on both the internal network and in the cloud, the probabilities of eitehr i am not sure on but i would say the internal network would generally be the more liekly location of a 'listener'.

葬花如无物 2024-08-01 00:57:20

如果我获得 SSL 证书以确保安全
我的电子邮件,这意味着
我的邮件客户端和之间的连接
我的邮件服务器将被加密。

不。但这意味着可以与您的服务器建立加密连接。

但是邮件之间会发生什么
服务器和目标邮件
服务器? 在那和之间
收件人的邮件客户端? 如果
收件人未使用 SSL,
电子邮件及其内容仍然是
安全吗?

不会。通过对与服务器的连接进行 SSL 加密,您得到的只是加密的登录对话框,因此攻击者将无法查看您的用户名/密码。

如果您想保护您的邮件消息,则必须在邮件客户端中对其进行加密。 PGPS/MIME 出现在我的脑海中。

If I get an SSL certificate to secure
my email, that would mean that the
connection between my mail client and
my mail server will be encrypted.

No. But it would mean that it's possible to establish an encrypted connection to your server.

But what happens between the mail
server and the destination mail
server? And between there and the
recipient's mail client? If the
reciepient isn't using SSL, will the
email and it's contents still be
secure?

No. All you get from SSL-encrypting the connection to your server is the encrypted login dialog so attackers won't be able to look at your username/password.

If you want to protect your mail messages, you will have to encrypt them in the mail client. PGP and S/MIME come to mind.

~没有更多了~
我们使用 Cookies 和其他技术来定制您的体验包括您的登录状态等。通过阅读我们的 隐私政策 了解更多相关信息。 单击 接受 或继续使用网站,即表示您同意使用 Cookies 和您的相关数据。
原文