O'Reilly logo

Windows Server® 2008 PKI and Certificate Security by Brian Komar

Stay ahead with the world's most comprehensive technology and business learning platform.

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, tutorials, and more.

Start Free Trial

No credit card required

Chapter 22: Secure E-Mail

Q:

Based on the security policies related to e-mail usage, how many e-mail certificates must be distributed to each user?

A:

Each user must be issued two e-mail certificates: one for e-mail signing and one for e-mail encryption.

Q:

What certificate(s) must be published to Active Directory Domain Services (AD DS) to enable the sending of encrypted e-mail between employees of Adventure Works?

A:

The encryption certificate must be published into the userCertificate attribute of the recipient’s user account in AD DS to allow a sender to obtain the recipient’s public key from the global catalog.

Q:

Will the current CA infrastructure allow the e-mail signing and encryption certificates to be recognized by the customers of Adventure ...

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, interactive tutorials, and more.

Start Free Trial

No credit card required