image: thunderbird app
In Thunderbird, the Enigmail utility looks after decryption and encryption using GnuPG
R E L A T E D   C O N T E N T
ADVERTISEMENT

Lock up your emails

The contents of an email can usually be seen on any machine it passes through. But it doesn’t have to be that way

Stefan Greiner and Mark Schroeder, Personal Computer World 27 Apr 2007
ADVERTISEMENT

When it comes to email and data encryption, one of the most well-known tools is PGP – Pretty Good Privacy.

Since version 9.0, Pretty Good Privacy has been a complete solution for data protection on the PC.

As well as encrypting and decrypting emails in Outlook, Outlook Express, Eudora and Entourage, it can also encrypt conversations in AOL’s Instant Messenger.

In addition, PGP can even encrypt entire hard disks to protect them from unauthorised access. The PGP Zip module also enables you to compress and encrypt files and directories. The current version, PGP Desktop Home 9.5, costs about £65 from the PGP online shop.

But you don’t need to spend money to protect your email. GNU Privacy Guard – or GnuPG – has proved itself to be one of the best open-source solutions. It integrates with most email clients to offer powerful encryption technology. If you can’t come to terms with the command-line version, there’s a complete bundle, gpg4win. The installer contains GnuPG and the Windows Privacy Tools (WinPT) key manager.

How it works
Encryption with GnuPG works according to a fairly simple principle, known as public key infrastructure (PKI). Every GnuPG user has a key pair that comprises a public key and a private key. Email and files that are encoded with the public key can only be decoded by using the private key.

The public keys are stored and correlated with email addresses centrally on a database held on a GnuPG key server. The private key is known only to its owner, and a password has to be entered every time it is used. In order to encrypt a message, you have to know the recipient’s public key by getting it from the key server.

Generating keys
Before that, you need to create your pair of keys. Start by clicking on GnuPG Key pair generation and enter your name, email address and password. The program uses this data to generate a public and a private key. You can make the public key available to other users by right-clicking on the WinPT icon in the system tray and choosing ‘Key management’ from the context menu.

In the window of the same name you will find the key that you have just created. Click on the entry and select ‘Send to key server’ from the context menu. Choose a server from the list and confirm your choice by clicking on Yes. The box on the next page shows how to use your GnuPG keys to encrypt email in some of the most popular mail clients.

A key can be used for more than just encrypting messages. Digitally signing an email is the only way to ensure that the recipient can be certain that the message really did come from the person who claims to have sent it.


All Home Networks

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S
M A R K E T P L A C E
Get your free demo of Numara Track-It! 8 - the leading help desk solution for IT related issues.
Make presentations, review documents & share your entire desktop. 30-day free trial! (cc required).
Discover how remote support can fuel your IT business in ways you've never thought of before.
Apply ITIL best practices at your service desk while eliminating integration cost. Learn more here.
WAN based, automated, daily vulnerability assessments. Click here to try and request our whitepapers.
Have your product or service listed here >   
Sponsored links
F E A T U R E D   J O B S
TWICKENHAM, United Kingdom | Rugby Football Union
RUGBYFIRST PROJECT MANAGER, TWICKENHAM, c. £40,000 per annum   12 month fixed term RugbyFirst, the most modern administration system in British sport, is a game-wide internet-based tool to help run rugby at all levels, with the ... more >
Colindale (C1905), United Kingdom | NHS Blood and Transplant
 Operations Engineer, £28,313 - £37,326 pa plus High Cost Area Supplement, Colindale (C1905) About us The National Blood Service is an integral and vital part of the NHS. Our two million volunteer donors contribute 1.6 ... more >
United Kingdom | Data Transparency
.NET Software Developer,  £20,000 - £35,000 depending on experience About us Data Transparency is a small, rapidly growing company established in 2006 by an Oxford graduate. We create bespoke web-based data systems that are used in ... more >
London, United Kingdom | Kings College London
Website Content Manager - Mental Health Care Department of Psychology/Computing and Knowledge Management This is a unique opportunity for someone who can combine their talents as a web editor with an excellent ability to communicate ... more >
More job opportunities