Title :
A distributed multipurpose mail guard
Author :
Wolthusen, Stephen D.
Author_Institution :
Security Technol. Dept., Fraunhofer-IGD, Darmstadt, Germany
Abstract :
We describe a mechanism for incorporating a mail guard mechanism together with automatic, mandatory, and fully transparent digital signatures and encryption for message traffic embedded into the operating system of individual network nodes. By intercepting all inbound and outbound network traffic and analyzing for pertinent information using generalized Buchi automata, the guard mechanism can enforce the application of (centralized) mail security policies without requiring any support from mail clients. An implementation based on modular modifications to the Microsoft Windows NT/2000/XP family of operating systems and OpenPGP-based messaging is described.
Keywords :
Internet; automata theory; cryptography; data integrity; electronic mail; electronic messaging; message authentication; network operating systems; telecommunication security; telecommunication traffic; Microsoft Windows; centralized mail security policies; digital signatures; distributed multipurpose mail guard; encryption; generalized Buchi automata; inbound network traffic; mail clients; message traffic; modular modification; network operating system; openPGP-based messaging; outbound network traffic; Automata; Communication system traffic control; Cryptography; Digital signatures; Electronic mail; Network servers; Operating systems; Postal services; Security; Telecommunication traffic;
Conference_Titel :
Information Assurance Workshop, 2003. IEEE Systems, Man and Cybernetics Society
Print_ISBN :
0-7803-7808-3
DOI :
10.1109/SMCSIA.2003.1232432