Re: [Fed-Talk] Apple Mail, exchange server, and signatures
Re: [Fed-Talk] Apple Mail, exchange server, and signatures
- Subject: Re: [Fed-Talk] Apple Mail, exchange server, and signatures
- From: "Hardis, Jonathan E. Dr. \(Fed\) via Fed-talk" <email@hidden>
- Date: Tue, 7 Jul 2020 17:34:06 +0000
- Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nist.gov; dmarc=pass action=none header.from=nist.gov; dkim=pass header.d=nist.gov; arc=none
- Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=XjJrjgLGvzr80h+sxf51doq4cJ10jiVXadHqobqHMrw=; b=hzpQ/ODig9/aQQ/Rk2arfPTQKC6Bf8DRhcuo8HGftxJAvJzApBJYFK0JFnXwI/nZsYjtbF0zaU1dBBdkByCehDvXHMD3bYHhND9Zpkf7K9J0z92p7te79Rtm+UBpcXdBsNRG0THlVOWH6I/lTMXD1WMO97gYhtmR+1ilnKG03ijwVSF7Y44/e1uayVypG3rYyrDEfM4pec4iISMyyaW4jXv1xnijAfDUfskGcIyKDrYIc7Dbgmmo8ZI4d643+SmPF/vc9sDOpuu/Mvpgx2YEdiH9VcBcYyGGd9h8SGBf82rOtaW8vN6PWUIcnT8dsUAO98kqJn5HDII1NublWQ+S+w==
- Arc-seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=HdGNcJUpaGmMql2YwYKR9+0kIrBcoBwznSRNJX/OWZqRDAIj8DPf4Q1VcgbgostAYCTebETRVF6GXLi8kjFOa9lIej1Kw7p3ZSSJDJQcBSK+iciO7kfe/oBsBQVD471qCqz8LQOSKWj26OQZpPXKc/KEGzmFk3CRaGWEzV/nCiS25DyMKYNiWyghEAQA/tVaobSux7i9nkSN1vMqAmdFVXAIABHu7aRliqPe7mquIu701Clt9PHPlq3JYlRkxPR/Y6xeYhWmDKsncjP9hJOrqpBq0K9rE7uS58ajKWMbW9TMMLp1xo1s+qstaDDvB1cDKWoCDTenbjR8p9jHDJxTeQ==
- Thread-topic: [Fed-Talk] Apple Mail, exchange server, and signatures
> On Jul 7, 2020, at 12:13 PM, Noam Bernstein via Fed-talk
> <email@hidden> wrote:
>
> Does anyone have experience with Apple Mail and Exchange server? My
> understanding is that basic functionality is ok, but there are a couple of
> missing things that I wonder anyone knows how to manage.
>
> 1. has anyone successfully sent Smartcard signed/encrypted email from Apple
> Mail and an Exchange server?
Yes. I do this regularly.
It took a while to figure out how to make it work, though. The difficulty is
that we have two forms of e-mail addresses. There is a short form that follows
from our usernames in a Windows AD environment (email@hidden) and a long
form based on our full names (email@hidden). It’s the latter that
matches the certificate on the PIV card. Under
Mail/Preferences…/Accounts/Account Information there’s a pop-up menu for "Email
Address”. That address must be in the long form to match the certificate.
When it does, the buttons appear to allow you to encrypt and sign.
- Jonathan
Attachment:
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Fed-talk mailing list (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden