in reply to [OT] E-mail security
I am not sure I agree with other respondents that suggested encryption may not be appropriate, or that you may gain something by double-encrypting through using an encrypted channel. Encryption can be made as strong as needed by the right choice of key length; if you need absolute security of the data for 10 years, I would recommend 2048 bit keys. And any issues with technical learning curve for dealing with encrypted mail for the customer should be mitigated by automatically decrypting and storing the data at the customer site. You really want to avoid spreading the security of your solution between multiple implementations/aspects, since you would have to make sure all are equally hardened.
There are multiple GPG modules available on CPAN to help you out with the implementation.
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^2: [OT] E-mail security
by hbo (Monk) on Aug 16, 2004 at 02:42 UTC | |
by bradcathey (Prior) on Aug 16, 2004 at 17:28 UTC |