EP1748614A1

Method and apparatus for processing digitally signed messages to determine address mismatches

Abstract

A method and apparatus for processing digitally signed messages in which address mismatch errors are detected. In at least one aspect, the number of address mismatch errors reported to a user for a message may be minimized for messages that properly incorporate message portions signed by someone other than the sender of the message, as may be the case where the message contains a conversation thread for example, by performing at least one pre-determined action for digital signatures corresponding to signed data appearing after a message separator. The message separator may indicate that the message contains data from an older forwarded message or from an older message that has been replied to, for example. The at least one-predetermined action may comprise bypassing verification of address matches for those digital signatures, or verifying address matches for those digital signatures but suppressing user notification of any address mismatch errors, for example.

EP1748614A1, drawing sheet 1
Sheet 1 of 11

Term

Term ended

Projected expiry passed 29 July 2025, 1.2 years ago.

  1. Priority and filed
  2. Published
  3. Projected expiry
  4. Today

26 claims: 12 independent, 14 dependent

  1. 1
    A method of processing signed messages received at a computing device, the method comprising the steps of:receiving (500, 500b, 500c) a message comprising a header identifying at least a sender address, at least one portion of signed data, a digital signature corresponding to each portion of signed data, and at least one message separator;determining (540) whether a first message separator appears within a portion of signed data;if the first message separator does not appear within a portion of signed data, performing at least one pre-determined action for each of the digital signatures in the message that appears after the first message separator;and if the first message separator appears within a portion of signed data, verifying (560) that the sender address matches the address associated with a key used to generate the one digital signature that appears after the first message separator and that corresponds to the portion of signed data within which the first message separator appears, and performing at least one pre-determined action for each of the other digital signatures in the message that appears after the first message separator.
  2. 4
    The method of any one of claims 1 to 3, wherein the at least one predetermined action for a digital signature that appears after the first message separator comprises bypassing (550, 580) verification that the sender address matches the address associated with a key used to generate said digital signature.
  3. 5
    The method of any one of claims 1 to 3, wherein the at least one predetermined action for a digital signature that appears after the first message separator comprises:verifying (550b, 580b) that the sender address matches the address associated with a key used to generate said digital signature;and suppressing (550b, 580b) notification of a user of the computing device of an address mismatch if the sender address does not match the address associated with the key used to generate said digital signature.
  4. 7
    The method of any one of claims 1 to 3, wherein the at least one predetermined action for a digital signature that appears after the first message separator comprises:verifying that the sender address matches the address associated with a key used to generate said digital signature;and suppressing display of at least a part of the message to a user of the computing device if the sender address does not match the address associated with the key used to generate said digital signature.
  5. 9
    The method of any one of claims 1 to 3, wherein the at least one predetermined action for a digital signature that appears after the first message separator comprises:determining (550c, 580c) a portion-specific address associated with the portion of signed data to which said digital signature corresponds;verifying (552c, 582c) that the portion-specific address matches the address associated with the key used to generate said digital signature;and notifying (554c, 584c) a user of the computing device of an address mismatch if the portion-specific address does not match the address associated with the key used to generate said digital signature.
  6. 13
    The method of any one of claims 9 to 12, wherein the determining of a portion-specific address comprises extracting an address for a previous sender from text in the message appearing between the message separator that most closely precedes the portion of signed data to which the digital signature corresponds and said portion.
  7. 14
    The method of any one of claims 9 to 12, wherein the determining of a portion-specific address comprises:extracting a name for a previous sender from text in the message appearing between the message separator that most closely precedes the portion of signed data to which the digital signature corresponds and said portion;and retrieving, from an address book, an address for the previous sender associated with the name.
  8. 15
    The method of any one of claims 1 to 14, further comprising for each digital signature in the message that appears before the first message separator, the steps of:verifying (530) that the sender address matches the address associated with the key used to generate said respective digital signature;and notifying (530) a user of the computing device of an address mismatch if the sender address does not match the address associated with the key used to generate said respective digital signature.
  9. 17
    The method of any one of claims 1 to 14, further comprising for each digital signature in the message that appears before the first message separator, the steps of:verifying that the sender address matches the address associated with the key used to generate said respective digital signature;and suppressing display of at least a part of the message to a user of the computing device if the sender address does not match the address associated with the key used to generate said digital signature.
  10. 21
    The method of any one of claims 1 to 20, wherein each of the at least one portion of signed data has been signed using a PGP key, and wherein each of the at least one portion of signed data is defined by a PGP begin message header and a corresponding PGP begin signature header in the message.
  11. 22
    The method of any one of claims 1 to 20, wherein each of the at least one portion of signed data has been signed using S/MIME.
  12. 25
    An apparatus adapted to perform the steps of the method of any one of claims 1 to 23.