AU2006200313B2

System and method for establishing that a server and a correspondent have compatible secure email

Abstract

This record has no abstract on file.

AU2006200313B2, drawing sheet 1
Sheet 1 of 8

Term

Term ended

Expired 24 January 2026, 0.7 years ago.

  1. Priority
  2. Filed
  3. Granted
  4. Expired
  5. Today

18 claims: 14 independent, 4 dependent

  1. 1
    C:\NRPortbI\DCOTXB\l744872_2.DOC - 30/11/09 -20THE CLAIMS DEFINING THE INVENTION ARE AS FOLLOWS: 1. A method for determining that a potential correspondent domain has compatible secure email technology in order to establish a link between a server of a source domain and a computer of a correspondent domain comprising: transmitting a discovery secret from the source domain to the correspondent domain wherein the discovery secret includes a data element specific to the correspondent domain and wherein the discovery secret includes a source domain address to which the correspondent domain sends a message in order to establish compatibility between the source domain and the correspondent domain;and receiving by the source domain via the source domain address an invitation from the correspondent domain wherein the invitation includes the data element or an element corresponding to the data element which may be used by the correspondent domain to initiate a process to establish compatibility with the correspondent domain;wherein the source domain verifies the data element received from the correspondent domain by re-computing and then comparing the data element received for the correspondent domain with the data element included in the discovery secret transmitted to the correspondent domain;and wherein the source domain only corresponds with the correspondent domain when the data element provided by the correspondent domain is the same as the data element included in the discovery secret so that a denial of service attack from a correspondent domain is mitigated.
  2. 4
    The method of any one of claims 1 to 3, wherein the discovery secret is a message which is generated in response to user action;wherein the discovery secret is a message with a single correspondent domain;wherein the discovery secret is a message to a correspondent domain which is an operator;wherein the discovery secret is a single message to the correspondent domain for each key;or wherein the discovery secret is a message sent on a time-based determination.
  3. 5
    The method of any one of claims 1 to 4, wherein the discovery secret comprises an additional header which includes the data element and the source domain address.
  4. 6
    The method of any one of claims 1 to 5, wherein the discovery secret comprises an expiration date and wherein the source domain does not establish that the correspondent and source domains have compatible secure email technology when receipt by the source domain of the invitation is after the expiration date.
  5. 7
    The method of any one of claims 1 to 6, wherein the data element is at least one of the following:a per domain secret including a random or pseudorandom number for each correspondent domain;a secret generated via hashing the correspondent domain and a secret seed that is used to generate per-domain secrets for more than one domain;and a per-domain secret generated encrypting the correspondent domain and an expiration date of the secret.
  6. 8
    The method of any one of claims 1 to 7, wherein the data element is selected from a plurality of multiple simultaneously valid secrets for each correspondent domain so that there are a plurality of valid secrets that can be used for communicating from a correspondent domain to the administrative address of the originating domain. C:\NRPortbl\DCC\TXB\l744872_2.DOC 30/11/09 2006200313 01 Dec 2009 -229. The method of any one of claims 1 to 8, further comprising imposing a limit on the number of messages that are passed to the source domain address with a particular data element whereby denial of service attacks using a correct data element are mitigated.
  7. 9
    10. The method of any one of claims 1 to 9, further comprising including the ability to override the requirement for a data element for a given correspondent domain to enable out-of-band authorization to send invitation messages from a particular domain. 10
  8. 10
    11. The method of any one of claims 1 to 10, wherein the data element is a token in the discovery secret message in a mail header or embedded in the body of a message or wherein the data element is a token in a mail header and the body of the message remains encrypted when passing through a mail server. 15
  9. 11
    12. The method of any one of claims 1 to 11, further comprising supporting multiple simultaneously valid tokens for the same domain and verifying invitation messages from sub-domains of the correspondent domain by verifying the incoming token against tokens for the correspondent domain. 20
  10. 12
    13. The method of any one of claims 1 to 12, wherein the data element is a mention and further comprising including in the mention version information for the source domain and including in the mention functions supported by the source domain.
  11. 13
    14. Computer-readable storage storing thereon a data structure for a discovery 25 secret to be transmitted from a source domain to a correspondent domain for establishing that the correspondent and source domains have compatible secure email technology comprising:a message;a header relating to the message;and 30 an additional header attached to the message and including (1) a data element specific to the correspondent domain and (2) including a source domain address to which the correspondent domain sends a message to the source domain in order to establish that C\NRPortbl\DCCVTXB\l 744872_2.DOC - 30/11/09 -23 the correspondent and source domains have compatible secure email technology, and (3) an expiration date, wherein the data element is at least one of the following: a secret generated via hashing the correspondent domain and a secret seed that is used to generate per-domain secrets for more than one domain;a data element selected from a plurality of multiple overlapping secrets for each correspondent domain so that there are a plurality of valid secrets that can be used for communicating from a correspondent domain to the administrative address of the originating domain;and a mention including version information for the source domain and including functions supported by the source domain;wherein the source domain verifies the data element received from the correspondent domain by re-computing and then comparing the current secret for the correspondent domain with the data element included in the discovery secret.
  12. 14
    15. A system for establishing that correspondent and source domains have compatible secure email technology, comprising:a source domain server transmitting a discovery secret to the correspondent domain wherein the discovery secret includes a data element specific to the correspondent domain and wherein the discovery secret includes a source domain address to which the correspondent domain sends a message in order to establish that the correspondent and source domains have compatible secure email technology;and a correspondent domain computer receiving the discovery secret including the data element and the source domain address, wherein the correspondent domain computer transmits an invitation from the correspondent domain to the source domain address, wherein the invitation includes the data element or an element corresponding to the data element, and wherein the data element is at least one of the following: a secret generated via hashing the correspondent domain and a secret seed that is used to generate per-domain secrets for more than one domain;a data element selected from a plurality of multiple overlapping secrets for each correspondent domain so that there are a plurality of valid secrets that can be used for communicating from a correspondent domain to the administrative address of the originating domain;C:\NRPonbI\DCC\TXB\l744872_2.DOC · 30/11/09 2006200313 01 Dec 2009 -24a mention and further comprising including in the mention version information for the source domain and including in the mention functions supported by the source domain;wherein the source domain verifies the data element received from the 5 correspondent domain by re-computing and then comparing the current secret for the correspondent domain with the data element included in the discovery secret.
  13. 17
    18. A method substantially as hereinbefore described with reference to the accompanying drawings.
  14. 18
    19. Computer-readable storage storing program instructions for performing the method of any one of claims 1 to 13 and 18 or for implementing the system of any one of claims 15 to 17. 15 20. A system substantially as hereinbefore described with reference to the accompanying drawings.