Security Question: Digital "Signatures" in Outlook. Any admins allowing them? ( 1 Views )
-
Seems like everyone at work has started clammoring for those cool "looks like you signed it" email sigtnatures. Our users are unable to view them becasue they get this nice prompt:
So everyone that's trying to set them up has a Red X signature in their emails. Has anyone who admins a decent sized company done any research as to how safe it would be to turn on Active X controls for these Outlook signatures? I'm not real keen on the idea, but if it's safe, we'll go for it.
(mahmut, United States Minor Outlying Islands)
Don't let Outook run any scripts, ActiveX or anything.. Unless you really like viruses.
==>Lazn
(selim, Thailand)
Ditto!
Why would they be using active-x? Mine is just a standard .jpg image always attached to the bottom of my email.
Like so...

(mehmet, Russian Federation)
a smime cert is a better digital signature ;)
I haven't run into this kind of thing yet though, but we aggressively filter html email.
(Bahar, Bosnia and Herzegovina)
You can configure S/MIME via group policy. If you have an internal cert server, you can automatically assigne user certs via group policy.
What I did was configure a policy to create a certificate for each user and store it in Active Directory. I then tweak some of the Outlook settings via another policy. User then had the option to enable S/MIME signing. You'll want to make sure that emails are sent in clear text though otherwise you'll get a bunch comlaining that anything other than Outlook doesn't read the mail properly.
Another caveat is that when messages that your CA isn't trusted by external domains. So, when someone opens an email from your domain, the get a warning.
If you are running Outlook 2003, also look into Right Management Server. It works well in conjuction with S/MIME.
(osman, Fiji)
Related Topics ... (or search in 1.720.883 topics !)
"register_globals" & "magic_quotes_gpc" = on on hosted account - security problem? (12) ad 2003 exporting "members" from a "security group" (2) "small" size allowed with signatures (16) variable question, security and the "new way". (8) vista: stop security warnings - let admins be admins! (9) allowing users to create "hot spots" on their images? (2) allowing only "some" of the html tags. (12) "hammer drops", "ko", "ati/nvidia suxors" "6800gt is 1337" "ati leads by far" (40) can't connect to local mysql server through socket (was "total "n00b" question(s)") (3)
copyright © 2007-2031 Pfodere.COM ( 7 Pfoyihuee Online )
|