Mail transmission agent primary anti-deny method based on domain hierarchy identifying mechanism

A certification body and mail technology, applied in transmission systems, digital transmission systems, electrical components, etc., can solve the problems of non-repudiation by the sender, the inability to determine the integrity of the mail, the real identity of the sender, and the inability to adapt to the distribution method. achieve an easy-to-achieve effect

Inactive Publication Date: 2006-06-07
BEIHANG UNIV
View PDF0 Cites 12 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

But there are still the following problems: (1) The end-to-end e-mail sender's non-repudiation problem depends on whether the sender signs the mail he sends, and the mail transmission system in the end-to-end method cannot enforce the sender to fulfill the non-repudiation requirement. responsibility
At this time, the sender of the spam does not encrypt and sign the content of the mail, and the receiver of the mail cannot determine the integrity of the mail and the real identity of the sender
(2) The local MTA does not authenticate the sender UA, which means that the attacker can use the legitimate UA identity to send a large amount of spam
However, with the continuous expansion of the application scale of public key cryptography in network security, this distribution method can no longer be adapted. At this time, PKI (Public Key Infrastructure) is needed to solve a large number of key distribution and management.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Mail transmission agent primary anti-deny method based on domain hierarchy identifying mechanism
  • Mail transmission agent primary anti-deny method based on domain hierarchy identifying mechanism
  • Mail transmission agent primary anti-deny method based on domain hierarchy identifying mechanism

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0063] The embodiment of the present invention will design and implement a set of mail transfer agent origin non-repudiation system on the basis of the content of the above invention.

[0064] OpenCA is widely used certificate issuing software on the Internet, and Sendmail is the most widely used mail transfer agent software on the Internet at present. In view of this, the system of the present invention uses OpenCA as the software of the certificate authentication system to issue CA, and Sendmail is used as the message transmission proxy software. In the implementation process of the present invention, the OpenSSL-0.9.7 software package is used. The encryption library, standard digital certificate, data encapsulation and other functions contained in the software package provide the lowest API for the realization of the system.

[0065] The design and implementation of the original non-repudiation system for email transmission follows the following principles:

[0066] (1) Do...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

This invention relates to non-repudiation of origin method for mail proxy based on DNS domain level certification authority. It contains 1, establishing CA, 2, establishing level structure CA corresponded with all DNS domain level structure, 3, generating and distributing MTA certificate, 4, source MTA calculating Hash value H to mail to be send, making digital signature to H by private key, said signature information is sig, 5, forming certificate chain mcerts to certificate from said field to root field, 5, sending {M, sig, mcerts} to next MTA, 7, identifying MTA certificate as being received by receiver MTA, 8, taking public key from identified source certificate, identifying the digital signature of source MTA to M by public key, 9, directly writing user mail box or sending to next MTA. Said invention realizes the forced non-repudiation of origin between MTA to MTA with convergent divergent level CA structure.

Description

Technical field [0001] The invention relates to Internet email security technology, in particular to an original non-repudiation method of a Mail Transfer Agent (MTA) based on a domain name (DomainName System, DNS) hierarchical certification authority (Certificate Authority, CA). Background technique [0002] Email is one of the most widely used services on the Internet, but email is also one of the least secure services on the Internet. On the one hand, a large number of applications of e-mail in e-government, e-commerce, etc. make the demand for secure communication by e-mail growing at an alarming rate; Mail security issues affect the normal use of mail. Therefore, the security problem of e-mail has been paid more and more attention by people. [0003] E-mail users must take social responsibility for their communication behavior, and the e-mail system must also consider the issue of social responsibility. According to Xinhua News, US President Bush signed a federal bil...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/58H04L9/30
Inventor 李肖坚夏春和彭红艳
Owner BEIHANG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products