Solved

Secure data being sent via website through email...

Posted on 2011-09-20
3
318 Views
Last Modified: 2012-05-12
I'm doing a website that allows for someone to submit forms online - but one of the questions asks for a Social Security Number. I secured the website with an SSL and the form results are going to a SQL database AND a copy is being send to the website owner via email so they can view and print everything out.

Seems simple enough, right? But their office networking guy is having a fit because he says that sending a copy of the form results via email is dangerous regardless of whether or not everything is secure because emails themselves are not secure. I see his point, but is it enough of a problem for anyone to worry about? What other option is there? Doesn't everyone use the email method?
0
Comment
Question by:orlandotommy
  • 2
3 Comments
 
LVL 82

Accepted Solution

by:
Dave Baldwin earned 500 total points
ID: 36569119
In situations requiring HIPAA compliance (for example) all communications including email must be sent thru encrypted channels.  Plain text email is not allowed and in fact is against the law in a HIPAA environment.  So, yes, some people take it quite seriously.
0
 

Author Comment

by:orlandotommy
ID: 36569344
How would email be sent through an encrypted channel?
0
 
LVL 82

Expert Comment

by:Dave Baldwin
ID: 36569678
There are ports for encrypted email.  If you have a Yahoo or AT&T account, they try to get you to use them.  Google too and here's the Google info: http://mail.google.com/support/bin/answer.py?answer=13287  I believe PHP and ASP.NET both have ways to use SSL email.
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

#SSL #TLS #Citrix #HTTPS #PKI #Compliance #Certificate #Encryption #StoreFront #Web Interface #Citrix XenApp
Password hashing is better than message digests or encryption, and you should be using it instead of message digests or encryption.  Find out why and how in this article, which supplements the original article on PHP Client Registration, Login, Logo‚Ķ
The viewer will learn how to count occurrences of each item in an array.
The viewer will learn how to look for a specific file type in a local or remote server directory using PHP.

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

22 Experts available now in Live!

Get 1:1 Help Now