During today's digital age, emails have become a crucial part of communications for both personal and enterprise usage. However, email transmission protocols were not designed with security in mind, and this has always been a challenge while trying to make email transmission more secure. On top of the basic layer of SMTP, POP3, and IMAP protocols to send and retrieve emails, there are several other major security protocols used in current days to secure email transmission such as TLS/SSL, STARTTLS, and PGP/GPG encryption. The most general design used in email transmission architecture is SMTP with PGP/GPG encryption sending through an TLS/SSL secure channel. Regardless, vulnerabilities within these security protocols and encryption methods, there is still work can be done regarding the architecture design. In this paper, we discuss the challenges among current email transmission security protocols and architectures. We explore some new techniques and propose a new email transmission architecture using EEKS structure and Schnorr Signature to eliminate the usage of PGP/GPG for encryption while achieving Perfect Forward Secrecy.
翻译:在当今的数码时代,电子邮件已成为个人和企业使用通信的一个重要部分。 但是,电子邮件传输协议的设计没有考虑到安全,这在试图使电子邮件传输更加安全时始终是一个挑战。除了SMTP、POP3和IMAP协议的发送和检索电子邮件的基本层面之外,目前还使用其他一些主要的安全协议来保证电子邮件传输的安全,如TLS/SSL、STARTTLS和PGP/GPG加密。电子邮件传输结构中使用的最一般设计是通过TLS/SSL安全频道发送PGP加密的SMTP。尽管在这些安全协议和加密方法中,在结构设计方面仍有弱点。在本文中,我们讨论了目前电子邮件传输安全协议和结构的挑战。我们探索了一些新技术,并提议使用EEKS结构和Snorrt 签名来消除使用PGPG/GP加密,同时实现完美前进系统。