CN105827518A - Secure cross-domain mail transfer method, device and system - Google Patents

Secure cross-domain mail transfer method, device and system Download PDF

Info

Publication number
CN105827518A
CN105827518A CN201610346336.2A CN201610346336A CN105827518A CN 105827518 A CN105827518 A CN 105827518A CN 201610346336 A CN201610346336 A CN 201610346336A CN 105827518 A CN105827518 A CN 105827518A
Authority
CN
China
Prior art keywords
mail
sent
addressee
content
password
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201610346336.2A
Other languages
Chinese (zh)
Other versions
CN105827518B (en
Inventor
王栋
玄佳兴
朱洪斌
李莉敏
李祉岐
王思宁
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
State Grid Corp of China SGCC
State Grid Information and Telecommunication Co Ltd
Beijing Guodiantong Network Technology Co Ltd
Original Assignee
State Grid Corp of China SGCC
State Grid Information and Telecommunication Co Ltd
Beijing Guodiantong Network Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by State Grid Corp of China SGCC, State Grid Information and Telecommunication Co Ltd, Beijing Guodiantong Network Technology Co Ltd filed Critical State Grid Corp of China SGCC
Priority to CN201610346336.2A priority Critical patent/CN105827518B/en
Publication of CN105827518A publication Critical patent/CN105827518A/en
Application granted granted Critical
Publication of CN105827518B publication Critical patent/CN105827518B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L51/00User-to-user messaging in packet-switching networks, transmitted according to store-and-forward or real-time protocols, e.g. e-mail
    • H04L51/21Monitoring or handling of messages
    • H04L51/212Monitoring or handling of messages using filtering or selective blocking
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/083Network architectures or network communication protocols for network security for authentication of entities using passwords

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

The invention discloses a secure cross-domain mail transfer method, device and system. The method comprises the following steps: acquiring a mail to be sent which is sent by a mail sender; encrypting content of the mail to be sent and generating a website link which corresponds to the content of the mail to be sent if the mail to be sent is a mail to be sent to an external domain; storing the content of the mail to be sent and the website link; modifying the mail to be sent, and generating a secure mail, wherein the secure mail only includes the website link; sending the secure mail to a receiver server; receiving an access request of a receiver specific to the website link, making a response to the access request, and pushing a password request interface to a machine of the mail receiver if a receiving mailbox is already registered to the receiver server; acquiring a password input by a user, wherein the password corresponds to the receiving mailbox; and pushing the content of the mail to be sent to the mail receiver if the password is correct. Through the technical scheme provided by the invention, the security index of an electronic mail system during cross-domain mail delivery can be increased, so that the risk of mail information leakage is lowered.

Description

Cross-domain e-mail transmission method, device and the system of safety
Technical field
The present invention relates to networking technology area, particularly relate to a kind of safe cross-domain e-mail transmission method, device and system.
Background technology
Under current internet environment, information security issue, especially enterprise information security problem becomes increasingly conspicuous, and e-mail system is as a kind of media of information being widely used in enterprise, and its safety should be by attention especially.
In current technology, agreement in plain text is often used during the cross-domain delivery of e-mail system (i.e. transmission), such as plaintext SMTP (SimpleMailTransferProtocol, Simple Mail Transfer protocol), the content that i.e. directly transmission mail comprises, this makes e-mail system there is natural vulnerability when cross-domain delivering mail, has the risk of bigger information leakage.
Summary of the invention
In view of this, the invention provides a kind of safe cross-domain e-mail transmission method, device and system, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
For achieving the above object, the present invention provides following technical scheme:
A kind of safe cross-domain e-mail transmission method, is applied to outbox side's server, and described method includes:
Obtain the mail to be sent that outbox user sends;
If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Store the content of described mail to be sent and described website links;
Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;
Send described secure e-mail to recipient server;
Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;
Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
Preferably, the described content-encrypt by described mail to be sent, before generating the website links corresponding with the content of described mail to be sent, also include:
Judge whether described mail to be sent is secret mail, if so, by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
Preferably, described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Preferably, if described addressee mailbox is at described outbox side server registration, before the machine of addressee user pushes password request interface, also include:
Judge that described addressee mailbox is the most at described outbox side server registration;
If it does not, send registration prompting message to the machine of described addressee user;
Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
Respond described registration request, complete the registration to described addressee mailbox.
A kind of safe cross-domain mail transmission device, is applied to outbox side's server, and described device includes:
First acquisition module, for obtaining the mail to be sent that outbox user sends;
Encrypting module, if being the mail mailing to foreign lands for described mail to be sent, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Memory module, for storing the content of described mail to be sent and described website links;
Modified module, is used for revising described mail to be sent, generates secure e-mail, and described secure e-mail only includes described website links;
First sending module, is used for sending described secure e-mail to recipient server;
Second sending module, for receiving and responding the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Second acquisition module, for obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
Pushing module, if correct for described password, pushes the content of described mail to be sent to the machine of described addressee user.
Preferably, also include:
First judge module, is used for judging whether described mail to be sent is secret mail, if so, triggers described encrypting module.
Preferably, described first judge module includes:
Judging unit, for judging whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Preferably, also include:
Second judge module, is used for judging that described addressee mailbox is the most at described outbox side server registration;
3rd sending module, for if it does not, send registration prompting message to the machine of described addressee user;
Receiver module, is used for receiving registration request, and described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
Respond module, is used for responding described registration request, completes the registration to described addressee mailbox.
A kind of safe cross-domain mail transmission system, including:
Outbox side's server and recipient server;
The operation of described outbox side server includes: obtain the mail to be sent that outbox user sends;If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;Store the content of described mail to be sent and described website links;Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;Send described secure e-mail to recipient server;Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
Preferably, the operation of described outbox side server also includes:
Judge whether described mail to be sent is secret mail, the most just by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
Preferably, the operation of described outbox side server also includes:
Judge that described addressee mailbox is the most at described outbox side server registration;If it does not, send registration prompting message to the machine of described addressee user;Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;Respond described registration request, complete the registration to described addressee mailbox.
Understand via above-mentioned technical scheme, compared with prior art, the invention provides a kind of safe cross-domain e-mail transmission method, device and system.nullThe technical scheme that the present invention provides,If the mail to be sent that outbox user sends is the mail mailing to foreign lands,Content-encrypt by described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If addressee mailbox is at described outbox side server registration,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the technical scheme that the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Accompanying drawing explanation
In order to be illustrated more clearly that the embodiment of the present invention or technical scheme of the prior art, the accompanying drawing used required in embodiment or description of the prior art will be briefly described below, apparently, accompanying drawing in describing below is only embodiments of the invention, for those of ordinary skill in the art, on the premise of not paying creative work, it is also possible to obtain other accompanying drawing according to the accompanying drawing provided.
The flow chart of a kind of safe cross-domain e-mail transmission method that Fig. 1 provides for the embodiment of the present invention;
The structure chart of a kind of safe cross-domain mail transmission device that Fig. 2 provides for the embodiment of the present invention.
Detailed description of the invention
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that described embodiment is only a part of embodiment of the present invention rather than whole embodiments.Based on the embodiment in the present invention, the every other embodiment that those of ordinary skill in the art are obtained under not making creative work premise, broadly fall into the scope of protection of the invention.
Understandable for enabling the above-mentioned purpose of the present invention, feature and advantage to become apparent from, the present invention is further detailed explanation with detailed description of the invention below in conjunction with the accompanying drawings.
Embodiment
Refer to the flow chart of a kind of safe cross-domain e-mail transmission method that Fig. 1, Fig. 1 provide for the embodiment of the present invention.The cross-domain e-mail transmission method of the safety that the embodiment of the present invention provides, is applied to outbox side's server, as it is shown in figure 1, the method includes:
Step S101, obtains the mail to be sent that outbox user sends;
Concrete, obtain the mail described to be sent that outbox user is sent by outbox mailbox.It is understood that described mail to be sent can be sent by the webpage client of outbox mailbox or machine (computer or mobile terminal) client.
Step S102, if described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generates the website links corresponding with the content of described mail to be sent;
Concrete, the content of described mail to be sent includes message body and/or Email attachment.
Step S103, stores the content of described mail to be sent and described website links;
Concrete, store the content of described mail to be sent and described website links at described outbox side server, owing to described outbox side server is in this territory, therefore, the content of described mail to be sent is stored in this territory.
Step S104, revises described mail to be sent, generates secure e-mail;
Concrete, described secure e-mail only includes described website links.
Step S105, sends described secure e-mail to recipient server;
Concrete, described secure e-mail is sent to recipient server, so that described secure e-mail is allotted to the addressee mailbox of correspondence by recipient server, so that addressee user can view described secure e-mail by addressee mailbox.
Optionally, the technical scheme that the embodiment of the present invention provides, still agreement in plain text is used during the cross-domain delivery of e-mail system (i.e. transmission), i.e. outbox server is cross-domain still uses agreement in plain text when addressee server sends secure e-mail, such as SMTP, due to cross-domain transmission is secure e-mail, so, use agreement in plain text not result in the leakage of e-mail messages.
That is, the cross-domain secure e-mail sent to addressee server of outbox server only includes a website links, there is no concrete Mail Contents, therefore, e-mail system (i.e. server) is not result in the leakage of Mail Contents when cross-domain delivering mail.
Step S106, receives and responds the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Concrete, the machine of addressee user can be computer or mobile terminal (such as smart mobile phone, panel computer etc.), pushes password request interface to the machine of addressee user, is used for pointing out addressee user to input password.
Step S107, obtains the password of addressee user input;
Concrete, described password is corresponding with described addressee mailbox.
Step S108, if described password is correct, pushes the content of described mail to be sent to the machine of described addressee user.
Concrete, if described password is correct, then can determine it is correct addressee user, the most described addressee user is mated with described addressee mailbox, now pushes the content of described mail to be sent to the machine of described addressee user, and safety is higher.
nullThe technical scheme that the embodiment of the present invention provides,If the mail to be sent that outbox user sends is the mail mailing to foreign lands,Content-encrypt by described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If addressee mailbox is at described outbox side server registration,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the technical scheme that the embodiment of the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Optionally, the technical scheme that another embodiment of the present invention provides, in described step S102, the described content-encrypt by described mail to be sent, before generating the website links corresponding with the content of described mail to be sent, also include:
Judge whether described mail to be sent is secret mail, if so, perform the described content-encrypt by described mail to be sent, generate the step of the website links corresponding with the content of described mail to be sent.
If it is to say, described mail to be sent is to mail to the mail of foreign lands and described mail to be sent is secret mail, then performing the described content-encrypt by described mail to be sent, generating the step of the website links corresponding with the content of described mail to be sent.
Optionally, if it is not, the most described mail to be sent not secret mail, the most described mail to be sent is sent to recipient server.
Optionally, the technical scheme that another embodiment of the present invention provides, described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Concrete, if it is not, then determine described mail to be sent the most described secret mail.
Optionally, the described information characterizing encryption includes word, symbol, word and the combination of symbol or a field of preset protocol, wherein, word can be the general word characterizing encryption implication, such as " encrypts ", " secret " etc., certainly, it is understandable that, in the range of described word is not limited in Chinese, it is also possible to be other kinds of language, such as English etc.;Symbol can be punctuation mark (such as exclamation mark etc.) or other kinds of symbol (such as " # " number);One field of described preset protocol, such as this field is called isSecret, then can arrange isSecret=0 and represent and do not encrypt, and isSecret=1 represents encryption.
Optionally, the technical scheme that another embodiment of the present invention provides, in described step S106, if described addressee mailbox is at described outbox side server registration, before the machine of addressee user pushes password request interface, also include:
Judge that described addressee mailbox is the most at described outbox side server registration;
If it does not, send registration prompting message to the machine of described addressee user;
Concrete, send registration prompting message to the machine of described addressee user, so that addressee user is according to described registration prompting message, sent the registration request of described addressee mailbox to described outbox side server by the machine of described addressee user.
Receive registration request;
Concrete, described registration request includes the log-on message that addressee user inputs, described log-on message includes the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox, wherein, described password is the password that the server account information with described addressee mailbox to be recorded in described outbox side is corresponding.It should be noted that the password (i.e. the password of the described addressee Email Accounts of recipient server record) of the account self of this password and described addressee mailbox is the most independent, the two is orthogonal.
Respond described registration request, complete the registration to described addressee mailbox;
Concrete, described outbox side server responds described registration request, records the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox, thus completes the registration to described addressee mailbox.
In order to illustrate the technical scheme that the present invention provides more fully hereinafter, corresponding to the cross-domain e-mail transmission method of the safety that the embodiment of the present invention provides, the present invention discloses a kind of safe cross-domain mail transmission device.
Refer to the structure chart of a kind of safe cross-domain mail transmission device that Fig. 2, Fig. 2 provide for the embodiment of the present invention.The cross-domain mail transmission device of the safety that the embodiment of the present invention provides, is applied to outbox side's server, as in figure 2 it is shown, this device includes:
First acquisition module 201, for obtaining the mail to be sent that outbox user sends;
Encrypting module 202, if being the mail mailing to foreign lands for described mail to be sent, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Memory module 203, for storing the content of described mail to be sent and described website links;
Modified module 204, is used for revising described mail to be sent, generates secure e-mail, and described secure e-mail only includes described website links;
First sending module 205, is used for sending described secure e-mail to recipient server;
Second sending module 206, for receiving and responding the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Second acquisition module 207, for obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
Pushing module 208, if correct for described password, pushes the content of described mail to be sent to the machine of described addressee user.
The cross-domain mail transmission device of the safety that the application embodiment of the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Optionally, the cross-domain mail transmission device of the safety that another embodiment of the present invention provides, also include:
First judge module, is used for judging whether described mail to be sent is secret mail, if so, triggers described encrypting module.
Optionally, the cross-domain mail transmission device of the safety that another embodiment of the present invention provides, described first judge module includes:
Judging unit, for judging whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Concrete, if it is not, then described judging unit determines described mail to be sent the most described secret mail.
Optionally, the described information characterizing encryption includes the combination of word, symbol or word and symbol, wherein, word can be the general word characterizing encryption implication, such as " encrypts ", " secret " etc., certainly, it is understandable that, in the range of described word is not limited in Chinese, it is also possible to be other kinds of language, such as English etc.;Symbol can be punctuation mark (such as exclamation mark etc.) or other kinds of symbol (such as " # " number).
Optionally, the cross-domain mail transmission device of the safety that another embodiment of the present invention provides, also include:
Second judge module, is used for judging that described addressee mailbox is the most at described outbox side server registration;
3rd sending module, for if it does not, send registration prompting message to the machine of described addressee user;
Receiver module, is used for receiving registration request, and described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
It should be noted that the password (i.e. the password of the described addressee Email Accounts of recipient server record) of the account self of this password and described addressee mailbox is the most independent, the two is orthogonal.
Respond module, is used for responding described registration request, completes the registration to described addressee mailbox.
Concrete, described respond module responds described registration request, records the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox, thus completes the registration to described addressee mailbox.
In order to illustrate the technical scheme that the present invention provides more fully hereinafter, corresponding to the cross-domain e-mail transmission method of the safety that the embodiment of the present invention provides, the present invention discloses a kind of safe cross-domain mail transmission system.
The cross-domain mail transmission system of the safety that the embodiment of the present invention provides, including:
Outbox side's server and recipient server;
The operation of described outbox side server includes:
Obtain the mail to be sent that outbox user sends;If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;Store the content of described mail to be sent and described website links;Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;Send described secure e-mail to recipient server;Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
nullThe cross-domain mail transmission system of the safety that the application embodiment of the present invention provides,Outbox side's server is if it is determined that the mail to be sent that outbox user sends is the mail mailing to foreign lands,Just by the content-encrypt of described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If outbox side's server determines that addressee mailbox is registered,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the cross-domain mail transmission system of the safety that the embodiment of the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Optionally, the cross-domain mail transmission system of the safety that another embodiment of the present invention provides, the operation of described outbox side server also includes:
Judge whether described mail to be sent is secret mail, the most just by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
If it is to say, described mail to be sent is to mail to the mail of foreign lands and described mail to be sent is secret mail, just performing, by the content-encrypt of described mail to be sent, to generate the step of the website links corresponding with the content of described mail to be sent.
Optionally, described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Concrete, if it is not, then determine described mail to be sent the most described secret mail.
Optionally, the cross-domain mail transmission system of the safety that another embodiment of the present invention provides, the operation of described outbox side server also includes:
Judge that described addressee mailbox is the most at described outbox side server registration;If it does not, send registration prompting message to the machine of described addressee user;Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;Respond described registration request, complete the registration to described addressee mailbox.
Understand via above-mentioned technical scheme, compared with prior art, the invention provides a kind of safe cross-domain e-mail transmission method, device and system.nullThe technical scheme that the present invention provides,If the mail to be sent that outbox user sends is the mail mailing to foreign lands,Content-encrypt by described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If addressee mailbox is at described outbox side server registration,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the technical scheme that the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Finally, it can further be stated that, in this article, the relational terms of such as first and second or the like is used merely to separate an entity or operation with another entity or operating space, and not necessarily requires or imply the relation or sequentially that there is any this reality between these entities or operation.And, term " includes ", " comprising " or its any other variant are intended to comprising of nonexcludability, so that include that the process of a series of key element, method, article or equipment not only include those key elements, but also include other key elements being not expressly set out, or also include the key element intrinsic for this process, method, article or equipment.In the case of there is no more restriction, statement " including ... " key element limited, it is not excluded that there is also other identical element in including the process of described key element, method, article or equipment.
In this specification, each embodiment uses the mode gone forward one by one to describe, and what each embodiment stressed is the difference with other embodiments, and between each embodiment, identical similar portion sees mutually.For device disclosed in embodiment and system, owing to it corresponds to the method disclosed in Example, so describe is fairly simple, relevant part sees method part and illustrates.
The method described in conjunction with the embodiments described herein or the step of algorithm can directly use the software module that hardware, processor perform, or the combination of the two is implemented.In any other form of storage medium that software module is known in can being placed in random access memory (RAM), internal memory, read only memory (ROM), electrically programmable ROM, electrically erasable ROM, depositor or technical field.
Described above to the disclosed embodiments, makes professional and technical personnel in the field be capable of or uses the present invention.Multiple amendment to these embodiments will be apparent from for those skilled in the art, and generic principles defined herein can realize without departing from the spirit or scope of the present invention in other embodiments.Therefore, the present invention is not intended to be limited to the embodiments shown herein, and is to fit to the widest scope consistent with principles disclosed herein and features of novelty.

Claims (11)

1. a cross-domain e-mail transmission method for safety, is applied to outbox side's server, it is characterised in that described method includes:
Obtain the mail to be sent that outbox user sends;
If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Store the content of described mail to be sent and described website links;
Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;
Send described secure e-mail to recipient server;
Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;
Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
Method the most according to claim 1, it is characterised in that the described content-encrypt by described mail to be sent, before generating the website links corresponding with the content of described mail to be sent, also includes:
Judge whether described mail to be sent is secret mail, if so, by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
Method the most according to claim 2, it is characterised in that described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Method the most according to claim 1, it is characterised in that if described addressee mailbox is at described outbox side server registration, before the machine of addressee user pushes password request interface, also include:
Judge that described addressee mailbox is the most at described outbox side server registration;
If it does not, send registration prompting message to the machine of described addressee user;
Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
Respond described registration request, complete the registration to described addressee mailbox.
5. a cross-domain mail transmission device for safety, is applied to outbox side's server, it is characterised in that described device includes:
First acquisition module, for obtaining the mail to be sent that outbox user sends;
Encrypting module, if being the mail mailing to foreign lands for described mail to be sent, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Memory module, for storing the content of described mail to be sent and described website links;
Modified module, is used for revising described mail to be sent, generates secure e-mail, and described secure e-mail only includes described website links;
First sending module, is used for sending described secure e-mail to recipient server;
Second sending module, for receiving and responding the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Second acquisition module, for obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
Pushing module, if correct for described password, pushes the content of described mail to be sent to the machine of described addressee user.
Device the most according to claim 5, it is characterised in that also include:
First judge module, is used for judging whether described mail to be sent is secret mail, if so, triggers described encrypting module.
Device the most according to claim 6, it is characterised in that described first judge module includes:
Judging unit, for judging whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Device the most according to claim 5, it is characterised in that also include:
Second judge module, is used for judging that described addressee mailbox is the most at described outbox side server registration;
3rd sending module, for if it does not, send registration prompting message to the machine of described addressee user;
Receiver module, is used for receiving registration request, and described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
Respond module, is used for responding described registration request, completes the registration to described addressee mailbox.
9. the cross-domain mail transmission system of a safety, it is characterised in that including:
Outbox side's server and recipient server;
The operation of described outbox side server includes: obtain the mail to be sent that outbox user sends;If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;Store the content of described mail to be sent and described website links;Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;Send described secure e-mail to recipient server;Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
System the most according to claim 9, it is characterised in that the operation of described outbox side server also includes:
Judge whether described mail to be sent is secret mail, the most just by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
11. systems according to claim 9, it is characterised in that the operation of described outbox side server also includes:
Judge that described addressee mailbox is the most at described outbox side server registration;If it does not, send registration prompting message to the machine of described addressee user;Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;Respond described registration request, complete the registration to described addressee mailbox.
CN201610346336.2A 2016-05-23 2016-05-23 The cross-domain e-mail transmission method of safety, device and system Active CN105827518B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610346336.2A CN105827518B (en) 2016-05-23 2016-05-23 The cross-domain e-mail transmission method of safety, device and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610346336.2A CN105827518B (en) 2016-05-23 2016-05-23 The cross-domain e-mail transmission method of safety, device and system

Publications (2)

Publication Number Publication Date
CN105827518A true CN105827518A (en) 2016-08-03
CN105827518B CN105827518B (en) 2019-11-22

Family

ID=56531026

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610346336.2A Active CN105827518B (en) 2016-05-23 2016-05-23 The cross-domain e-mail transmission method of safety, device and system

Country Status (1)

Country Link
CN (1) CN105827518B (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106411709A (en) * 2016-10-13 2017-02-15 国家电网公司 Secure mail transmission method and device
CN107835124A (en) * 2017-12-15 2018-03-23 世纪龙信息网络有限责任公司 E-mail sending method, apparatus and system
CN109474513A (en) * 2018-10-11 2019-03-15 重庆易保全网络科技有限公司 Electronic data is sent to method and server
CN111641552A (en) * 2020-05-29 2020-09-08 长城计算机软件与系统有限公司 Mail transmission system and method based on autonomous security

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050267937A1 (en) * 2004-04-19 2005-12-01 Daniels David L Universal recallable, erasable, secure and timed delivery email
CN101795243A (en) * 2010-03-26 2010-08-04 成都市华为赛门铁克科技有限公司 Method, device and system for accessing attachment files in electronic mails
CN102025647A (en) * 2009-09-17 2011-04-20 中国长城工业总公司 System and method for mail sending and receiving
CN102195989A (en) * 2011-06-15 2011-09-21 中国电信股份有限公司 Email processing method and system
CN103595615A (en) * 2012-08-15 2014-02-19 腾讯科技(深圳)有限公司 Methods and terminals for sending and receiving E-mail

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20050267937A1 (en) * 2004-04-19 2005-12-01 Daniels David L Universal recallable, erasable, secure and timed delivery email
CN102025647A (en) * 2009-09-17 2011-04-20 中国长城工业总公司 System and method for mail sending and receiving
CN101795243A (en) * 2010-03-26 2010-08-04 成都市华为赛门铁克科技有限公司 Method, device and system for accessing attachment files in electronic mails
CN102195989A (en) * 2011-06-15 2011-09-21 中国电信股份有限公司 Email processing method and system
CN103595615A (en) * 2012-08-15 2014-02-19 腾讯科技(深圳)有限公司 Methods and terminals for sending and receiving E-mail

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106411709A (en) * 2016-10-13 2017-02-15 国家电网公司 Secure mail transmission method and device
CN107835124A (en) * 2017-12-15 2018-03-23 世纪龙信息网络有限责任公司 E-mail sending method, apparatus and system
CN109474513A (en) * 2018-10-11 2019-03-15 重庆易保全网络科技有限公司 Electronic data is sent to method and server
CN111641552A (en) * 2020-05-29 2020-09-08 长城计算机软件与系统有限公司 Mail transmission system and method based on autonomous security
CN111641552B (en) * 2020-05-29 2022-04-15 长城计算机软件与系统有限公司 Mail transmission system and method based on autonomous security

Also Published As

Publication number Publication date
CN105827518B (en) 2019-11-22

Similar Documents

Publication Publication Date Title
US20190319905A1 (en) Mail protection system
US9602473B2 (en) Secure message forwarding with sender controlled decryption
US8261061B2 (en) Methods and systems for encouraging secure communications
CN102045267B (en) Message recall method and device
US20070100999A1 (en) Method, system and software for rendering e-mail messages
CN101715638A (en) Secure electronic messaging system requiring key retrieval for deriving decryption key
US20130103944A1 (en) Hypertext Link Verification In Encrypted E-Mail For Mobile Devices
US20150149775A1 (en) Method and System of Secure Email
CN105827518A (en) Secure cross-domain mail transfer method, device and system
CN106411709A (en) Secure mail transmission method and device
US20120296988A1 (en) Email spam elimination using per-contact address
CN104518943A (en) Method and system for e-mail management
CN104660491A (en) Mail handling method
US9948627B1 (en) Secure electronic document delivery system
CA2793422C (en) Hypertext link verification in encrypted e-mail for mobile devices
JP5793251B2 (en) Information processing apparatus, e-mail browsing restriction method, computer program, and information processing system
CN105323254A (en) A mail encryption system based on a domestic commercial cipher code chip and an implementation method thereof
NL2011857C2 (en) Secure single sign-on exchange of electronic data.
CN102300176B (en) Method and system for enhancing security of email of mobile terminal system based on secure TransFlash (TF) card
US9652621B2 (en) Electronic transmission security process
US10715475B2 (en) Dynamic electronic mail addressing
CN106027498A (en) Method and device for improving email security of enterprise mobile management (EMM) system
JP4728902B2 (en) Secure mail distribution system, secure mail distribution apparatus, secure mail distribution method, and program
US20230291767A1 (en) Method of Detect an Email Phishing Attempt or Fraudulent Email Within an Email Domain
CN108462787A (en) A kind of automatic encryption method of information of mobile terminal and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
TA01 Transfer of patent application right

Effective date of registration: 20170419

Address after: 102211 Beijing City, Beiqijia Town, the future of science and technology in the north of the State Grid smart grid C block, block

Applicant after: STATE GRID INFORMATION & TELECOMMUNICATION GROUP CO., LTD.

Applicant after: State Grid Corporation of China

Applicant after: STATE GRID INFORMATION & TELECOMMUNICATION BRANCH

Applicant after: Beijing Guodiantong Network Technology Co., Ltd.

Address before: 100031 Xicheng District West Chang'an Avenue, No. 86, Beijing

Applicant before: State Grid Corporation of China

Applicant before: STATE GRID INFORMATION & TELECOMMUNICATION BRANCH

Applicant before: Beijing Guodiantong Network Technology Co., Ltd.

TA01 Transfer of patent application right
GR01 Patent grant
GR01 Patent grant