Designing secure email infrastructure

Dharmendra Choukse, Umesh Kumar Singh, Lokesh Laddhani, Rekha Shahapurkar · 2012

In the dawn of the information age, information has been attributed with an utmost important asset of an organization. There has been manifold rise in the information from past few decades. Information exchange has become the need of business continuity and is required for growth of the organization. Various methods have been introduced for an exchange of information but email has evolved as the prime means of communication for all the organizations. The inherent simplicity of email system has become the prime factor for its popularity. With the increase in information rate, there has been exponential rise in the security threats as well. Email though has inherent simplicity but it has an inherent weak security as well. Email systems are vulnerable to various types of attacks and threats including SMTP - auth attacks, denial of service attacks and also it can act as medium for phishing and pharming attacks. This paper will explain inherent weakness in email infrastructure and methodologies to improve the security of the email infrastructure and also will highlight good and weak practices in varying aspects of email infrastructure design paradigm. The paper will also highlight the implementation of Email Security in IPS Academy.

Read the paper · More papers on PaperTik