Summary of the invention
In view of this, the invention provides a kind of safe cross-domain e-mail transmission method, device and system, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
For achieving the above object, the present invention provides following technical scheme:
A kind of safe cross-domain e-mail transmission method, is applied to outbox side's server, and described method includes:
Obtain the mail to be sent that outbox user sends;
If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Store the content of described mail to be sent and described website links;
Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;
Send described secure e-mail to recipient server;
Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;
Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
Preferably, the described content-encrypt by described mail to be sent, before generating the website links corresponding with the content of described mail to be sent, also include:
Judge whether described mail to be sent is secret mail, if so, by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
Preferably, described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Preferably, if described addressee mailbox is at described outbox side server registration, before the machine of addressee user pushes password request interface, also include:
Judge that described addressee mailbox is the most at described outbox side server registration;
If it does not, send registration prompting message to the machine of described addressee user;
Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
Respond described registration request, complete the registration to described addressee mailbox.
A kind of safe cross-domain mail transmission device, is applied to outbox side's server, and described device includes:
First acquisition module, for obtaining the mail to be sent that outbox user sends;
Encrypting module, if being the mail mailing to foreign lands for described mail to be sent, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Memory module, for storing the content of described mail to be sent and described website links;
Modified module, is used for revising described mail to be sent, generates secure e-mail, and described secure e-mail only includes described website links;
First sending module, is used for sending described secure e-mail to recipient server;
Second sending module, for receiving and responding the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Second acquisition module, for obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
Pushing module, if correct for described password, pushes the content of described mail to be sent to the machine of described addressee user.
Preferably, also include:
First judge module, is used for judging whether described mail to be sent is secret mail, if so, triggers described encrypting module.
Preferably, described first judge module includes:
Judging unit, for judging whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Preferably, also include:
Second judge module, is used for judging that described addressee mailbox is the most at described outbox side server registration;
3rd sending module, for if it does not, send registration prompting message to the machine of described addressee user;
Receiver module, is used for receiving registration request, and described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
Respond module, is used for responding described registration request, completes the registration to described addressee mailbox.
A kind of safe cross-domain mail transmission system, including:
Outbox side's server and recipient server;
The operation of described outbox side server includes: obtain the mail to be sent that outbox user sends;If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;Store the content of described mail to be sent and described website links;Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;Send described secure e-mail to recipient server;Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
Preferably, the operation of described outbox side server also includes:
Judge whether described mail to be sent is secret mail, the most just by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
Preferably, the operation of described outbox side server also includes:
Judge that described addressee mailbox is the most at described outbox side server registration;If it does not, send registration prompting message to the machine of described addressee user;Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;Respond described registration request, complete the registration to described addressee mailbox.
Understand via above-mentioned technical scheme, compared with prior art, the invention provides a kind of safe cross-domain e-mail transmission method, device and system.nullThe technical scheme that the present invention provides,If the mail to be sent that outbox user sends is the mail mailing to foreign lands,Content-encrypt by described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If addressee mailbox is at described outbox side server registration,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the technical scheme that the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Embodiment
Refer to the flow chart of a kind of safe cross-domain e-mail transmission method that Fig. 1, Fig. 1 provide for the embodiment of the present invention.The cross-domain e-mail transmission method of the safety that the embodiment of the present invention provides, is applied to outbox side's server, as it is shown in figure 1, the method includes:
Step S101, obtains the mail to be sent that outbox user sends;
Concrete, obtain the mail described to be sent that outbox user is sent by outbox mailbox.It is understood that described mail to be sent can be sent by the webpage client of outbox mailbox or machine (computer or mobile terminal) client.
Step S102, if described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generates the website links corresponding with the content of described mail to be sent;
Concrete, the content of described mail to be sent includes message body and/or Email attachment.
Step S103, stores the content of described mail to be sent and described website links;
Concrete, store the content of described mail to be sent and described website links at described outbox side server, owing to described outbox side server is in this territory, therefore, the content of described mail to be sent is stored in this territory.
Step S104, revises described mail to be sent, generates secure e-mail;
Concrete, described secure e-mail only includes described website links.
Step S105, sends described secure e-mail to recipient server;
Concrete, described secure e-mail is sent to recipient server, so that described secure e-mail is allotted to the addressee mailbox of correspondence by recipient server, so that addressee user can view described secure e-mail by addressee mailbox.
Optionally, the technical scheme that the embodiment of the present invention provides, still agreement in plain text is used during the cross-domain delivery of e-mail system (i.e. transmission), i.e. outbox server is cross-domain still uses agreement in plain text when addressee server sends secure e-mail, such as SMTP, due to cross-domain transmission is secure e-mail, so, use agreement in plain text not result in the leakage of e-mail messages.
That is, the cross-domain secure e-mail sent to addressee server of outbox server only includes a website links, there is no concrete Mail Contents, therefore, e-mail system (i.e. server) is not result in the leakage of Mail Contents when cross-domain delivering mail.
Step S106, receives and responds the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Concrete, the machine of addressee user can be computer or mobile terminal (such as smart mobile phone, panel computer etc.), pushes password request interface to the machine of addressee user, is used for pointing out addressee user to input password.
Step S107, obtains the password of addressee user input;
Concrete, described password is corresponding with described addressee mailbox.
Step S108, if described password is correct, pushes the content of described mail to be sent to the machine of described addressee user.
Concrete, if described password is correct, then can determine it is correct addressee user, the most described addressee user is mated with described addressee mailbox, now pushes the content of described mail to be sent to the machine of described addressee user, and safety is higher.
nullThe technical scheme that the embodiment of the present invention provides,If the mail to be sent that outbox user sends is the mail mailing to foreign lands,Content-encrypt by described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If addressee mailbox is at described outbox side server registration,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the technical scheme that the embodiment of the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Optionally, the technical scheme that another embodiment of the present invention provides, in described step S102, the described content-encrypt by described mail to be sent, before generating the website links corresponding with the content of described mail to be sent, also include:
Judge whether described mail to be sent is secret mail, if so, perform the described content-encrypt by described mail to be sent, generate the step of the website links corresponding with the content of described mail to be sent.
If it is to say, described mail to be sent is to mail to the mail of foreign lands and described mail to be sent is secret mail, then performing the described content-encrypt by described mail to be sent, generating the step of the website links corresponding with the content of described mail to be sent.
Optionally, if it is not, the most described mail to be sent not secret mail, the most described mail to be sent is sent to recipient server.
Optionally, the technical scheme that another embodiment of the present invention provides, described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Concrete, if it is not, then determine described mail to be sent the most described secret mail.
Optionally, the described information characterizing encryption includes word, symbol, word and the combination of symbol or a field of preset protocol, wherein, word can be the general word characterizing encryption implication, such as " encrypts ", " secret " etc., certainly, it is understandable that, in the range of described word is not limited in Chinese, it is also possible to be other kinds of language, such as English etc.;Symbol can be punctuation mark (such as exclamation mark etc.) or other kinds of symbol (such as " # " number);One field of described preset protocol, such as this field is called isSecret, then can arrange isSecret=0 and represent and do not encrypt, and isSecret=1 represents encryption.
Optionally, the technical scheme that another embodiment of the present invention provides, in described step S106, if described addressee mailbox is at described outbox side server registration, before the machine of addressee user pushes password request interface, also include:
Judge that described addressee mailbox is the most at described outbox side server registration;
If it does not, send registration prompting message to the machine of described addressee user;
Concrete, send registration prompting message to the machine of described addressee user, so that addressee user is according to described registration prompting message, sent the registration request of described addressee mailbox to described outbox side server by the machine of described addressee user.
Receive registration request;
Concrete, described registration request includes the log-on message that addressee user inputs, described log-on message includes the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox, wherein, described password is the password that the server account information with described addressee mailbox to be recorded in described outbox side is corresponding.It should be noted that the password (i.e. the password of the described addressee Email Accounts of recipient server record) of the account self of this password and described addressee mailbox is the most independent, the two is orthogonal.
Respond described registration request, complete the registration to described addressee mailbox;
Concrete, described outbox side server responds described registration request, records the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox, thus completes the registration to described addressee mailbox.
In order to illustrate the technical scheme that the present invention provides more fully hereinafter, corresponding to the cross-domain e-mail transmission method of the safety that the embodiment of the present invention provides, the present invention discloses a kind of safe cross-domain mail transmission device.
Refer to the structure chart of a kind of safe cross-domain mail transmission device that Fig. 2, Fig. 2 provide for the embodiment of the present invention.The cross-domain mail transmission device of the safety that the embodiment of the present invention provides, is applied to outbox side's server, as in figure 2 it is shown, this device includes:
First acquisition module 201, for obtaining the mail to be sent that outbox user sends;
Encrypting module 202, if being the mail mailing to foreign lands for described mail to be sent, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;
Memory module 203, for storing the content of described mail to be sent and described website links;
Modified module 204, is used for revising described mail to be sent, generates secure e-mail, and described secure e-mail only includes described website links;
First sending module 205, is used for sending described secure e-mail to recipient server;
Second sending module 206, for receiving and responding the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushes password request interface to the machine of addressee user;
Second acquisition module 207, for obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;
Pushing module 208, if correct for described password, pushes the content of described mail to be sent to the machine of described addressee user.
The cross-domain mail transmission device of the safety that the application embodiment of the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Optionally, the cross-domain mail transmission device of the safety that another embodiment of the present invention provides, also include:
First judge module, is used for judging whether described mail to be sent is secret mail, if so, triggers described encrypting module.
Optionally, the cross-domain mail transmission device of the safety that another embodiment of the present invention provides, described first judge module includes:
Judging unit, for judging whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Concrete, if it is not, then described judging unit determines described mail to be sent the most described secret mail.
Optionally, the described information characterizing encryption includes the combination of word, symbol or word and symbol, wherein, word can be the general word characterizing encryption implication, such as " encrypts ", " secret " etc., certainly, it is understandable that, in the range of described word is not limited in Chinese, it is also possible to be other kinds of language, such as English etc.;Symbol can be punctuation mark (such as exclamation mark etc.) or other kinds of symbol (such as " # " number).
Optionally, the cross-domain mail transmission device of the safety that another embodiment of the present invention provides, also include:
Second judge module, is used for judging that described addressee mailbox is the most at described outbox side server registration;
3rd sending module, for if it does not, send registration prompting message to the machine of described addressee user;
Receiver module, is used for receiving registration request, and described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;
It should be noted that the password (i.e. the password of the described addressee Email Accounts of recipient server record) of the account self of this password and described addressee mailbox is the most independent, the two is orthogonal.
Respond module, is used for responding described registration request, completes the registration to described addressee mailbox.
Concrete, described respond module responds described registration request, records the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox, thus completes the registration to described addressee mailbox.
In order to illustrate the technical scheme that the present invention provides more fully hereinafter, corresponding to the cross-domain e-mail transmission method of the safety that the embodiment of the present invention provides, the present invention discloses a kind of safe cross-domain mail transmission system.
The cross-domain mail transmission system of the safety that the embodiment of the present invention provides, including:
Outbox side's server and recipient server;
The operation of described outbox side server includes:
Obtain the mail to be sent that outbox user sends;If described mail to be sent is the mail mailing to foreign lands, by the content-encrypt of described mail to be sent, generating the website links corresponding with the content of described mail to be sent, the content of described mail to be sent includes message body and/or Email attachment;Store the content of described mail to be sent and described website links;Revising described mail to be sent, generate secure e-mail, described secure e-mail only includes described website links;Send described secure e-mail to recipient server;Receive and respond the addressee user access request to described website links, if addressee mailbox is at described outbox side server registration, pushing password request interface to the machine of addressee user;Obtaining the password of addressee user input, described password is corresponding with described addressee mailbox;If described password is correct, push the content of described mail to be sent to the machine of described addressee user.
nullThe cross-domain mail transmission system of the safety that the application embodiment of the present invention provides,Outbox side's server is if it is determined that the mail to be sent that outbox user sends is the mail mailing to foreign lands,Just by the content-encrypt of described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If outbox side's server determines that addressee mailbox is registered,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the cross-domain mail transmission system of the safety that the embodiment of the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Optionally, the cross-domain mail transmission system of the safety that another embodiment of the present invention provides, the operation of described outbox side server also includes:
Judge whether described mail to be sent is secret mail, the most just by the content-encrypt of described mail to be sent, generate the website links corresponding with the content of described mail to be sent.
If it is to say, described mail to be sent is to mail to the mail of foreign lands and described mail to be sent is secret mail, just performing, by the content-encrypt of described mail to be sent, to generate the step of the website links corresponding with the content of described mail to be sent.
Optionally, described judge whether described mail to be sent is secret mail, including:
Judge whether the content of described mail to be sent includes characterizing the information of encryption, if it is, determine that described mail to be sent is described secret mail.
Concrete, if it is not, then determine described mail to be sent the most described secret mail.
Optionally, the cross-domain mail transmission system of the safety that another embodiment of the present invention provides, the operation of described outbox side server also includes:
Judge that described addressee mailbox is the most at described outbox side server registration;If it does not, send registration prompting message to the machine of described addressee user;Receiving registration request, described registration request includes that the log-on message that addressee user inputs, described log-on message include the account information of described addressee mailbox and the described password corresponding with the account information of described addressee mailbox;Respond described registration request, complete the registration to described addressee mailbox.
Understand via above-mentioned technical scheme, compared with prior art, the invention provides a kind of safe cross-domain e-mail transmission method, device and system.nullThe technical scheme that the present invention provides,If the mail to be sent that outbox user sends is the mail mailing to foreign lands,Content-encrypt by described mail to be sent,Generate the website links corresponding with the content of described mail to be sent,Then described mail to be sent is revised,Generate the secure e-mail only including described website links,Send described secure e-mail to recipient server,That is,The cross-domain secure e-mail sent to addressee server of outbox server only includes a website links,There is no concrete Mail Contents,Therefore,It is not result in information leakage,When accessing described website links after addressee user receives described secure e-mail,If addressee mailbox is at described outbox side server registration,The password that then request addressee user input is corresponding with addressee mailbox,If described password is correct,Just can determine it is correct addressee user,The content of described mail to be sent is now pushed to the machine of described addressee user,Complete the transmission of mail,Safe and reliable.Therefore, the technical scheme that the present invention provides, it is possible to be effectively improved the e-mail system safety index when cross-domain delivering mail, thus reduce the risk that e-mail messages is revealed.
Finally, it can further be stated that, in this article, the relational terms of such as first and second or the like is used merely to separate an entity or operation with another entity or operating space, and not necessarily requires or imply the relation or sequentially that there is any this reality between these entities or operation.And, term " includes ", " comprising " or its any other variant are intended to comprising of nonexcludability, so that include that the process of a series of key element, method, article or equipment not only include those key elements, but also include other key elements being not expressly set out, or also include the key element intrinsic for this process, method, article or equipment.In the case of there is no more restriction, statement " including ... " key element limited, it is not excluded that there is also other identical element in including the process of described key element, method, article or equipment.
In this specification, each embodiment uses the mode gone forward one by one to describe, and what each embodiment stressed is the difference with other embodiments, and between each embodiment, identical similar portion sees mutually.For device disclosed in embodiment and system, owing to it corresponds to the method disclosed in Example, so describe is fairly simple, relevant part sees method part and illustrates.
The method described in conjunction with the embodiments described herein or the step of algorithm can directly use the software module that hardware, processor perform, or the combination of the two is implemented.In any other form of storage medium that software module is known in can being placed in random access memory (RAM), internal memory, read only memory (ROM), electrically programmable ROM, electrically erasable ROM, depositor or technical field.
Described above to the disclosed embodiments, makes professional and technical personnel in the field be capable of or uses the present invention.Multiple amendment to these embodiments will be apparent from for those skilled in the art, and generic principles defined herein can realize without departing from the spirit or scope of the present invention in other embodiments.Therefore, the present invention is not intended to be limited to the embodiments shown herein, and is to fit to the widest scope consistent with principles disclosed herein and features of novelty.