Message portal: encrypted without a certificate
The message portal provides encrypted email as a web reader when the recipient has no S/MIME certificate and no PGP key.
Not every recipient uses S/MIME or OpenPGP. For that case SecureMail offers the message portal, a web reader as a fallback. The message does not leave the gateway in clear text, the recipient reads it in the browser.
The web reader delivers encrypted messages securely.
Fallback without a certificate
If no certificate and no key is available for a recipient, the message is stored securely on the gateway instead of being delivered unencrypted. The recipient receives a notification with a link and reads the message in the portal after authentication. No software installation and no registration is needed. The portal is enabled as a protocol in an outbound route.
Replying in the portal
The recipient can reply directly in the secured portal, and the reply comes back encrypted. External recipients thereby reply only to contacts who have contacted them before. Internal recipients use the portal as a mailbox with an inbox and sent messages.
Branding, expiry and integrity
The portal can be adapted to the corporate identity of the tenant, with its own logo and colours. Messages and attachments can be given an expiry date. The integrity of a message is checked with SHA-256 and reported as verified or as integrity violated.
PDF encryption as an alternative
As a further option SecureMail delivers confidential email as a password-protected PDF with AES-256. The recipient only needs a PDF reader. The password is agreed in advance or set by the recipient in self-service through the portal. This delivery suits recipients without any encryption infrastructure at all.
Key management is described on the certificates page, the opposite direction in inbound messages. The SecureMail index gives an overview. For large file attachments SecureFiles is additionally suitable. Further reading: the secure external communication solution.