Simply focusing on the security of e-mail servers does not prevent mail messages from "Running naked" on the internet. E-Mail has become one of the most important and indispensable communication tools for personal life and work, which makes the problem of email security more and more prominent. The most serious problem is the lack of awareness of e-mail security. Google search for "e-mail security," Generally speaking of how to protect against spam, virus mail and phishing mail and so on. In fact, e-mail security issues mainly include two aspects: first, the security of the e-mail server, including network security and how to prevent and eliminate spam, virus mail and phishing messages from the server side, these are the basic requirements of e-mail services While another issue is how to ensure that e-mail users ' e-mail content is not illegally stolen, illegally tampered with, and how to prevent illegal users from logging on to legitimate users ' e-mail accounts. In these two aspects, I think the latter is more important, and it has not aroused people's high attention. It is because of the very important confidential information and confidential business information in the content of the e-mail that someone illegally steals the content of the message, tampering with the content of the message and falsifying the legal identity to send the email. And because e-mail is the same as other Internet applications are clear text transmission, so that the theft of mail content, tampering with the content of the message is very easy to achieve, and the commonly used e-mail web logon is a simple user name/password authentication, Makes it very easy to illegally acquire and forge a legal identity to log in to e-mail accounts to check email and send e-mail. The above serious problem does not get the email service provider enough attention and take the corresponding technical measures. In fact, the existing mature PKI technology (digital certificate) can solve the above problem, that is, the deployment of SSL digital certificates for e-mail servers and each e-mail user to use personal digital certificates to encrypt e-mail, and use personal digital certificates to sign each outgoing message, Let the recipient be assured that this email is indeed from the purported sender. The current e-mail service provider only MSN (Hotmail) and Google Gmail in the user's Web site to deploy SSL digital certificate, while the other major e-mail service providers in the country almost no one deployed SSL digital certificates, not to mention supporting personal digital certificates, In other words, China's hundreds of millions of e-mail accounts sent by the e-mail messages are "naked" on the Internet (clear text transmission), are mailed "postcards", rather than the true meaning of the letter with envelopes, this situation is very worrying, This irresponsible approach to e-mail users, whether free or fee-based, is worth every e-mail consumer taking up legal weapons to protect the legitimate interests of consumers, while also hoping that the country's major e-mail service providers can deploy SSL digital certificates as soon as possible to secure e-mail. Thus gaining new competitive advantage in the intense email market. (Responsible editor: ZHAOHB) to force (0 Votes) Tempted (0 Votes) nonsense (0 Votes) Professional (0 Votes) The title party (0 Votes) passing (0 Votes) Text: block the message content "naked" return to the network security home
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.