5 ms·
Title is misleading; it should say something like encrypting ALL emails. They have of course been able to encrypt individual emails for at least a decade with
by YCode 9y ago
Title is misleading; it should say something like encrypting ALL emails.
They have of course been able to encrypt individual emails for at least a decade with their CAC/PKI by checking a box in their email client.
After re-reading the article they never make any mention of existing crypto practices... Seems like purposely misleading or sloppy journalism.
However in the origin article they link to there is a useful gem:
> "STARTTLS is an extension for the Post Office Protocol 3 and Internet Message Access protocols, which rely on username and password for system access," the spokesperson wrote. "To remain compliant with DOD PKI policy, DEE does not support the use of username and password to grant access, and does not leverage either protocol."
I'm not versed in those protocols, but if that statement was true at the time it makes sense to me that the military wouldn't take a step back to using passwords when they already implemented physical tokens (CAC+pin) DoD-wide.