암호화
보내는 사람이 나에게 오는 메일을 봉인할 수 있게 해 주는 공개 키.
암호화 도구
| 도구 | 하는 일 |
|---|---|
| listEncryptionKeys | 내 주소에 게시된 OpenPGP 공개 키를 유효한 것과 폐기된 것 모두 최신순으로, 지문과 함께 보여 줍니다. |
| publishEncryptionKey | 내 주소 중 하나에 아머 형식의 공개 키를 게시하거나, replaces로 유효한 키를 교체합니다. 확인 코드를 요청합니다. |
| lookupEncryptionKeys | 각 수신자 주소의 유효한 공개 키로, 메시지를 봉인하기 전에 작성기가 하는 조회입니다. |
게시된 키는 클라이언트를 연결한 사람의 것입니다. 읽기와 게시에는 emails:read가, 수신자 조회에는 emails:send가 필요합니다. 일부 주소로 제한된 클라이언트는 그 주소에 대해서만 나열하고 게시합니다.
이 도구들로는 공개 키만 오갑니다. 개인 키는 그것을 만든 기기에 남으므로, 여기서는 봉인된 메일을 읽을 수 없습니다. 앱 채팅에서는 요청하지 않은 한 게시하기 전에 먼저 묻습니다.
이 서버의 일부 도구는 REST API가 인증 코드로 보호하는 변경을 하며, 같은 코드를 요구합니다. 클라이언트가 최근 60분 안에 코드를 인증하지 않았고, 사용자가 계정 → 연결된 앱에서 그 클라이언트에 대해 60분 동안 변경 허용을 고르지도 않았다면, 이런 도구는 Refused (step_up_required):로 시작하는 결과를 반환하고 아무것도 바꾸지 않습니다. emptyAudience는 코드를 요구하지 않습니다. 코드를 요구하는 도구 목록과 코드를 요청하고 인증하는 방법은 API의 인증 페이지에 있습니다.
레퍼런스
listEncryptionKeys
The OpenPGP public keys published for your addresses in this workspace, the Encryption page of the app: live ones and retired ones, newest first, with their fingerprints. Published keys belong to the person who connected the client.
입력
입력을 받지 않습니다.
다른 사용처
publishEncryptionKey
Publish an armored OpenPGP public key for one of your addresses, so that senders can seal mail to it, as Publish on the Encryption page does. An address keeps one live key: to rotate, pass the fingerprint of the live key as replaces. Never invent a key; only publish one the person gave you.
- 인증 코드 요청
POST /encryption/keys
입력
addressstring필수- 최대 320자
publicKeystring필수- 64~65536자패턴
^-----BEGIN PGP PUBLIC KEY BLOCK-----[\s\S]+-----END PGP PUBLIC KEY BLOCK-----\s*$ fingerprintstring필수- 패턴
^[0-9A-F]{40}$ algorithmstring- 최대 32자
replacesstring- 패턴
^[0-9A-F]{40}$
다른 사용처
lookupEncryptionKeys
The live public keys published for each recipient address, the lookup the composer makes before it seals a message. An address with no key cannot be sent sealed mail.
입력
addressesstring[]필수- 1~51개 항목