Re: Reading encrypted mail?

From: David Sengupta [MVP] (sengupta_at_*N0*ncf*SPAM*.ca)
Date: 03/22/04


Date: Sun, 21 Mar 2004 23:27:20 -0500

no prob

-- 
David Sengupta  M.T.S., B.Sc., MVP, MCSE, MCSE 2000, CCA  Ottawa, Canada
Exchange Reporting & Analysis: http://www.quest.com/messagestats/
Exchange FAQ - http://www.swinc.com/resource/exch_faq.htm
"Jims" <biz@neocasa.net> wrote in message
news:ej3FFWqDEHA.3408@tk2msftngp13.phx.gbl...
> Thanks
>
> "David Sengupta [MVP]" <sengupta@*N0*ncf*SPAM*.ca> wrote in message
> news:%23zvogFjDEHA.2424@TK2MSFTNGP09.phx.gbl...
> > Nope. There's a public key and private key involved ... the key pair are
> > required to decrypt the email. The GAL just contains the public key.
> > Delegates may have access to the public key (i.e. through GAL) but the
> > private key should be for the user only and therefore only the user can
> read
> > the email (or someone sitting at their computer impersonating them, of
> > course).
> >
> > -- 
> > David Sengupta  M.T.S., B.Sc., MVP, MCSE, MCSE 2000, CCA  Ottawa, Canada
> > Exchange Reporting & Analysis: http://www.quest.com/messagestats/
> > Exchange FAQ - http://www.swinc.com/resource/exch_faq.htm
> >
> >
> > "Jims" <biz@neocasa.net> wrote in message
> > news:OP9K4DgDEHA.3784@TK2MSFTNGP10.phx.gbl...
> > > Is it possible as an Exchange Full Admin to open a user's mailbox and
> read
> > a
> > > message that was sent to them by a domain user and encrypted with the
> > > recipients cert (stored in the GAL)?  Is it possible for user's with
> > > delegated mailbox access to read received encrypted messages in the
> > mailbox?
> > > Trying to get an idea of how secure encrypted mail is in
> outlook/Exchange
> > > 2003.
> > > thanks,
> > > biz
> > >
> > >
> > >
> >
> >
>
>


Relevant Pages

  • Re: RSA Key Exchange
    ... Server B, so it initiates a request saying "Hey... ... At this point is where we can do key exchange, how we want to do it is up to ... So client A says "Hey, here's my public key, encrypt all packets coming out ... Now each one has a public key, so secured communications continue. ...
    (microsoft.public.dotnet.languages.vb)
  • Re: New Method for Authenticated Public Key Exchange without Digital Certificates
    ... so i ask to exchange keys with somebody ... ... while such a extended man-in-the-middle attack isn't impossible ... things that are the public key exchange ... ... so an ongoing man-in-the-middle substitution attack on typical PGP ...
    (sci.crypt)
  • Re: Key establishment question
    ... machines need to exchange two random numbers, e.g., R1, R2, if ... Diffie-Hellman is used. ... encrypt it with my private key. ... The fact that my public key decrypts ...
    (comp.security.misc)
  • How does this work?
    ... prevent man-in-middle attack to Diffie_hellman exchange by "Encrypt ... the Diffie_Hellman value with the other side's public key". ...
    (sci.crypt)
  • Re: Need General Encryption Guidance
    ... >Exchange/Outlook seems to offer quite a bit of functionality. ... Exchange and Outlook only allow you to use a certificate to sign (or ... recipient must have your public key and they *should* trust your CA ... That expense ...
    (microsoft.public.exchange.admin)