Cosmian Announces Strategic Partnership with Utimaco to Deliver Best-in-Class Security Through HSM-Integrated KMS

E-mail confidentiality: Secure your Gmail exchanges with S/MIME and Cosmian kms.

E-mail confidentiality: Secure your Gmail exchanges with S/MIME and Cosmian kms.

By Cosmian | February 13, 2025 | Security, Public Cloud, Gmail, Google Workspace

Historically, e-mail content has been transmitted in the clear, even when sent and received via encrypted channels. However, S/MIME (Secure/Multipurpose Internet Mail Extensions) is a standard for secure end-to-end e-mail communication.

This technique uses certificates and a Public Key Infrastructure (PKI) to :

  • guarantee the confidentiality of exchanges, through e-mail encryption;
  • digitally sign e-mails and verify their integrity;
  • guarantee the identity of the message sender, using digital certificates.

S/MIME makes a strong comeback

S/MIME has been around for years, but has remained little used, due to the complexity of managing identities, keys and certificates, particularly within webmails. Nevertheless, desktop e-mail clients such as Microsoft Outlook, Apple Mail and Mozilla Thunderbird have long supported this encryption and signature technology.

Recently, Google reintroduced S/MIME support within its Gmail online e-mail service. The company’s aim is to offer a complete, interoperable solution for securing e-mails, whereas players such as Microsoft currently focus solely on client-side encryption (CSE) for messages stored in the cloud.

At Google, S/MIME support is part of the client-side encryption strategy for data used on Google Workspace. The adoption of S/MIME for Gmail makes it possible to offer a wide range of services, adapted to the specific needs of an e-mail service. Once activated, the sending and receiving of secure e-mails is made possible by easy-to-use functions that are perfectly integrated with Gmail. In addition, public keys are collected automatically, facilitating key sharing between correspondents.

How do I enable S/MIME in Gmail?

S/MIME support in Gmail is activated via CSE. The Google Workspace administrator must therefore first check whether the organization has Enterprise Plus licenses, and then activate CSE. He or she will then need to connect a key management system to Google Workspace, and generate and send public and private keys to each user.

The use of Cosmian kms (Key Management System) will greatly simplify the activation and management of S/MIME in Gmail. This offering includes everything you need to set up a PKI, as well as tools capable of interfacing with Google’s services to automatically generate all the keys required. Cosmian kms is directly accessible on the Google Cloud marketplace, enabling easy deployment on the cloud, via a confidential, fully protected virtual machine.

Ensure total confidentiality of your data in Snowflake: discover how Cosmian kms guarantees protection without compromising performance or user experience.


Reach out now for an instant trial.

 

Our latest news

— There are no limits

Find us on
the Marketplaces

Regain control now on your data and applications in the cloud, subscribe to our cloud marketplaces offering on AWS, Azure and Google Cloud.

Cosmian makes no tracking for advertising and does not collect any personal data. Cookies are used for statistical or operational purposes, as well as for analysis, allowing for continuous improvement of the website. Cosmian uses the Matomo Analytics tool, an audience measurement solution that uses cookies with a configuration that complies with the data protection legislation and the recommendations of the CNIL (Commission Nationale de l'Informatique et des Libertés). This configuration allows to anonymise visitor's data and to limit the storage period of this data to a maximum of 13 months. With this configuration, the prior consent to the deposit of Matomo Analytics cookies is not required. However, you can still choose not to allow these cookies by clicking below or at any time by consulting our Privacy Policy.

You may choose to prevent this website from aggregating and analyzing the actions you take here. Doing so will protect your privacy, but will also prevent the owner from learning from your actions and creating a better experience for you and other users.