On 2016-04-03 09:45, Syafril Hermansyah wrote:
> --- dilanjutkan ke bagian 2 -->

Pengaktifan PGP di MDaemon
---------------------------

Pada prinsipnya PGP adalah Digital Signature and Encryption per user
basis, dalam hal ini terikat ke email address sehingga signing and
encryption dilakukan di email client.

Di MDaemon ada fungsi/fitur email client y.i. di webmail, sehingga MDPGP
ini pada dasarnya untuk digunakan oleh Worldclient Webmail.
Jika pakai email client maka PGP sign/encrypt perlu diinstall aplikasi PGP.

http://mdaemon.dutaint.co.id/mdaemon/16.0/index.html?mdpgp.htm

[x] Enable encryption/signing

[x] Enable encryption/signing
[x] Enable decryption service

kalau ingin melakukan automatic sign/encryption maka aktifkan

[x] Sign mail automatically if sender's private key is known
[x] Encrypt mail automatically if recipient's public key is known
[x] Encrypt/Sign mail between users of the same domain
[x] Encrypt/Sign mail between users of local MDaemon domains
[x] Encrypt/Sign mail sent from aliases
[x] Encrypt/Sign mail sent to self

[x] Auto-import public-keys sent from authenticated users
[ ] Email public-keys when requests are made (--pgpk command)
[x] Email details of encryption failures to sender (--pgpe command)

Jika signing/encryption dilakukan secara manual (on demand), maka non
aktifkan menu "Sign mail automatically if sender's private key is known"
dan "Encrypt mail automatically if recipient's public key is known" diatas.
Lalu jika ingin sign PGP saat kirim mail di subject ditambahkan

Subject: --pgps {subject asli}

atau

Subject : {subject asli} --pgps

Lengkapnya:

--pgps
Sign this message if possible. Code can be placed at the beginning or
end of the Subject.

--pgpe
Encrypt this message if possible. Code can be placed at the beginning or
end of the Subject.

--pgpx
The message MUST be encrypted. If it cannot be encrypted (e.g. because
the recipient's key isn't known) then do not deliver it; the message
will be bounced/returned to the sender. Code can be placed at the
beginning or end of the Subject.

--pgpk
Send me my public key. The user places this code at the beginning of the
Subject and sends the message to himself. MDPGP will then email the user
his public key.

--pgpk<Email>
Send me this address' public key. The user places this code at the
beginning of the Subject and sends the message to himself. MDPGP will
then email the user the address' public key.

kalau hanya user/group tertentu diaktifkan PGP maka klik menu "Configure
who can use MDPGP" yang akan memicu notepad membuka file

\\MDaemon\Pem\_mdpgp\rules.txt

contoh pengaturannya sbb:

[email protected] [email protected]  # [email protected] can encrypt and decrypt

+*@altn.com !*@altn.com          # all users of altn.com can
                                        encrypt and decrypt

[email protected]                  # don't encrypt Frank's mail

-*@example.net                   # don't encrypt mail for
                                        anyone at example.net

[email protected]               # ... except for Frank

[email protected]             # don't decrypt pgpuser's mail

+GROUP:EncryptingUsers           # all members of MDaemon's
                                        EncryptingUsers group can
                                                encrypt

^GROUP:Signers                   # all members of MDaemon's Signers
                                        group can sign

jika semua user di MDaemon diaktifkan maka aktifkan menu berikut

[x] All MDaemon users on this server can use MDPGP


Membuat PGP key
--------------

-- dilanjutkan ke bagian 3 -->




-- 
syafril
-------
Syafril Hermansyah
Running MDaemon 16.0.2-64 Beta A, SP 4.5.1-64

Orang rasional menanggapi dunia, orang tdk rasional berusaha membuat
dunia menanggapinya
        -- Bernard Shaw

-- 
--[MDaemon-L]------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server.

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Henti Langgan: Kirim mail ke MDaemon-L-unsubscribe [at] dutaint.com
Berlangganan: kirim mail ke MDaemon-L-subscribe [at] dutaint.com
Versi terakhir MD 16.0.1, SP 4.5.1, BES 2.0.2, OC 3.5.2, SG 3.0.3

Kirim email ke