Stephen Farrell asked why not use Web portal mail? Why do we need to develop 
plasma?

I don't think we concisely answered that question in the BoF and it is an 
important data point.

The web portal mail products are used where there is no way to securely deliver 
sensitive mail to a recipient outside the sender's organization. The message is 
held within the sender's organization and a notification email is sent to the 
recipient.  The notification email contains a HTTPS URI to the original message 
with the sensitive content.

This model work Ok if it is bilateral communication e.g. doctor-patient where 
you want to reply to the sender. This has been deployed with my healthcare 
provider and we can exchange messages.   However the notification email are 
very generic by design so it hard to find specific messages in your inbox other 
than by date and time sent. It also means useful features like inbox search 
don't work as you only have the notification message in your inbox.

This model fails totally if it's multilateral communication where you want to 
reply all or forward to messages. The message never leaves the originators 
organization so you cannot originate new message as if it were from a 
recipient's organization. This means for business to business scenario it would 
hinder the use of email for collaboration.

With these limitations I think it's clear that that plasma offers some 
significant benefits over web portal email.

Dr Trevor Freeman  Senior Security Strategist
End to End Trust 
Team<http://www.microsoft.com/mscorp/twc/endtoendtrust/default.mspx>
Microsoft Trustworthy Computing 
<http://www.microsoft.com/mscorp/twc/default.mspx>

_______________________________________________
plasma mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/plasma

Reply via email to