End-to-End Encryption
Exchange encrypted e-mails from client to client with external partners using standard apps like Outlook.
Make public Keys public
Provide user encryption certificates from your AD to the outside world in a secure way via LDAP or web browser.
Encrypt to anyone
Provide millions of S/MIME certificates from connected global directories or just use ad-hoc certificates.
"Secardeo certBox is used by large corporations for the enforcement of end-to-end encryption of e-mails with external partners using standard applications."
Standard e-mail clients like Outlook or Thunderbird support e-mail encryption based on the S/MIME standard. In order to encrypt for your internal users, external partners require your public certificates. If your internal users want to encrypt, they need the certificates of their external recipients. Instead of letting users exchange their certificates manually this job has to be automated. The Secardeo certBox is a certificate directory service that serves for these two tasks:
For inbound encryption, the Secardeo certBox enables the secure access to the enterprise’s encryption certificates. This can be achieved in the operational mode as a secure LDAP proxy or as an external certificate directory. Retrieval of X.509 certificates can be done automatically with standard e-mail clients using LDAP. Users may also download certificates manually by protected web forms. Address harvesting attacks will be defeated efficiently and internal directory structures remain hidden. The certBox may also be used for publishing certificate revocation lists for HTTP or LDAP CRL download. The certificates being published by the certBox may be synchronized automatically with Active Directory via certSync.
For outbound encryption, searching for external digital certificates by Outlook and other client applications is done automatically via LDAP. A user can also download certificates manually via HTML browser. The certBox provides a high grade of PKI interoperability by its integrated PKI directory database. With it, millions of user encryption certificates can be found by the certificate broker. Partners who do not provide an own LDAP directory may upload their certificates to your certBox. End-to-end encryption is even possible for recipients who do not have an X.509 certificate using ad-hoc certificates by certBox ICE. The internal user can encrypt as usual to anybody or even to a domain-address on the whitelist.
The recipient can easily download and install the decryption key or he can easily decrypt the message using the web-decrypter.
© 2024 Secardeo GmbH.
All rights reserved.