Hellowe have our Djigzo gateway configured to encrypt all outgoing mail if a matching certificate is found by setting "Encrypt Mode = Allow". Today i discovered a mail which was not encrypted but a valid certificate is available. I suspekt it is because the odd keyUsage setting in the certificate. It contains "digitalSignature" as only keyUsage, but "emailProtection" as Extended Key Usage. Have i got it right that all certificates which do not contain "keyEncipherment" as keyUsage or have empty keyUsage are not used for encryption by automatical selection?
Many Thanks Andreas
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ Users mailing list [email protected] http://lists.djigzo.com/lists/listinfo/users
