Search DominoPower's 11,420 Lotus-related article archive 
Home
EasyPrint
News details Click here for the RSS feed's XML code. This is not a browser URL.
Articles-only Click here for the RSS feed's XML code. This is not a browser URL.
Twitter Feed Click here for the Twitter feed.
Introduction to Internet security standards (continued)

An encryption key is information (a string of alphanumeric characters) that is used to encode or decode information. The difficulty lies in telling people who need to decrypt information what the encryption key is. The most secure way of handling this is to use a public encryption key to encode information in such a way that only a different, private encryption key can decode it. In other words if I send a note to you, I encrypt it with your public key which is available to everyone but only you can decrypt the note using your private key. This is called Public Key encryption. Public Key encryption is good because public keys can be made available over the Internet and through directory services.

Deploying and managing public and private keys requires a framework for managing security information. Such a framework is called Public Key Infrastructure or PKI. For several years Domino was practically the only messaging and groupware system providing a PKI and PKI management tools, but it was implemented with proprietary RSA technology. The Notes ID with which all Notes administrators are familiar is actually a form of digital certificate containing public and private encryption keys. The most popular implementation of Public Key encryption for email is Secure Multipurpose Internet Mail Extensions or S/MIME.

S/MIME provides end-to-end Public Key encryption for email messages. A message encrypted by the sender can only be decrypted by the recipient. At no time during the transmission or routing of the message is the message stored unencrypted nor does any user or administrator have access to the content of the message. Through digital signatures, S/MIME also provides sender authentication and tamper detection.

Today, Internet standards-based security technologies dominate the market. Vendors which had previously lacked a security model equivalent to that of Domino have now implemented similar security models using Inter standards-based technologies. At the same time, competition is taking shape around the business of providing enterprise (intranet) and inter-enterprise (extranet) PKI management facilities. In a sense Domino has a head start but Lotus faces the challenge of integrating Internet standards-based security technology with its existing security model.

Digital certificates
Digital certificates are widely used for Internet applications and I mentioned that the Notes ID is a proprietary form of digital certificate. The Internet standard for digital certificates is X.509. Like the Notes ID, the X.509 certificate contains a user's public and private keys. Certificates are used in several ways including Public Key encryption, digital signature (a way of verifying the originator of information), and to establish trust between applications or organizations based on the issuer of the certificate (the Certificate Authority or CA). A certification authority (CA) is a trusted third party authorized to issue digital certificates.

A certificate consists of a public key signed by a trusted third party or Certificate Authority. Certificates make it possible for different users to trust one another's public keys. X.509 certificates are an electronic credential like a government-issued ID or passport. A certificate can be used to access an intranet or extranet application. For example, in order to log in to a system a client application such as a web browser presents the user's certificate to the system and uses it for authentication and access control. Information for external users, such as a business partner, can be made available to users whose certificates were issued by the organization for that purpose.


« Previous  ·  1  ·  2  ·  3  ·  Next »
Other articles you might like
Home > Strategies > Security (19 articles)
   Incident report: denial of service attack against ConnectedPhotographer.com
   Centralised email encryption at the Domino server level
   Analysis: Spying Chinese temptress steals senior Brit's BlackBerry
Get Weekly Email Updates
Subscribe to our regular weekly email newsletter. It's packed with tips, reviews, deep analysis, and the latest news.
 
Recent DominoPower Articles
Application development, William Shatner, and the origin of the universe
The (near) future of Sametime, Quickr, Connections, and Symphony
Inside the IBM Innovations lab
Lotusphere 2010: Hot fixes and cool news for Notes, Domino, and LotusLive
Lotusphere 2010: mobility and collaboration
2010: A Lotusphere of change
Five trends for 2010
Latest Lotus Headlines
New Notes/Domino Technotes published about Chile's extended daylight saving time
SnnT: How to prevent Google from listing your Sametime Server
How to send someone an email that shows your calendar availability
"The collection has become invalid"
More XPages onclick event weirdness...
Domino 8.5.1 Fix Pack 1 Interim Fix 1 (8.5.1 FP1 IF1) - DAOS Fixes
Domino Designer 8.5 Tip: Where Working Sets Are Stored
>> Read all the news
More from the ZATZ journals
Computing Unplugged: Make Mafia Wars an offer it can't refuse
David Gewirtz Online: CNN commentary and analysis
OutlookPower: Removing an Office installation that doesn't want to go away
-- Advertisement --

Sophisticated Meets Simple For Document Management
Share. Control. Manage.
Documents, emails, and content in the context of how work is done. Native to Lotus Domino. The User Experience unseen for Lotus Domino. Do more with less. Really.

See the possibilities Docova unleashes for Lotus Domino.
-- Advertisement --

Mark your calendar for in-depth Lotus training, May 12-14, Boston
Join experts and peers May 12-14 in Boston for educational and networking events that deliver real-world Lotus training so you can increase productivity and efficiency in your company, advance your skills, and squeeze the most from your current environment. One registration gets you into THE VIEW's Admin2010 and Lotus Developer2010.

Register by December 31 to save $350.
ZATZ Home  ·  News  ·  Back Issues  ·  Credits/Trademarks ·  Link To Us
Copyright © 1998-2010, ZATZ Publishing. All rights reserved worldwide.
Editor's Login