


Click OK when warned about Outlook publishing your default security certificates to the Global Address List.Click Publish to GAL… beneath the Digital IDs (Certificates) heading.Browse to File -> Options -> Trust Center -> Trust Center Settings and select Email Security.Publishing your certificates to the GAL will add your encryption certificate to an enterprise address book, making it easier for other agency users to send you an encrypted email. The Global Address List (GAL) is a shared, enterprise-wide contact directory in Microsoft Outlook. Publish your Certificates to the Global Address List Note: The following screenshot shows an example of a completed security preference configuration. Enable the Send these certificates with signed messages selection box.Select AES (256-bit) as the Encryption Algorithm.Click Choose next to Encryption Certificate.Select your PIV card’s digital signature certificate and click OK.Click Choose next to Signing Certificate.Assign a Security Settings Name (for example, “Secure Email - PIV”).Click New to create a new security preference.Click Settings… beneath the Encrypted Email heading.Browse to File -> Options -> Trust Center -> Trust Center Settings… and select Email Security.Insert your PIV card in your computer’s smart card reader.The following steps pertain to Microsoft Outlook 2016. Be aware that by default, Outlook will only allow siganture and encryption of emails provided the configured email address on the client is same email address as encoded on a PIV. The following guide will walk you through configuring Outlook to leverage the digital signature and key management certificates found on your PIV to enable secure email. Encrypted emails prevent the message from being read by unintended recipients (confidentiality). Digitally signed emails give us confidence that the individual who claimed to send a message actually did (non-repudiation) and that the message was not modified while in transit (integrity). Digital Autopen for OFR Documents (NEW!)ĭid you know that PIV cards contain digital certificates intended to help users send secure email? In general, “secure email” refers to digitally signed and/or encrypted emails.Digitally Sign Federal Register Document.Phishing-Resistant Authenticators (Coming Soon).
