Hi,
We've just migrated to Exchange 2013 and I've been asked to investigate "this free end-to-end encryption you can turn on with PowerShell, that doesn't require individual certificates" feature.
Sounds vague? It is! If anyone can help I'd be grateful. Our Exchange is on-prem exclusively, from what I've found online there's something called EHE which may be what this is about, but if that's the case then it's useless because it's part of Office 265 (I think).
Sorry I can't provide any more detail- this request came via the sort of "a friend of a friend" (or a colleague of a colleague) and sounds like magic- a simple bit of PowerShell will enable us to encrypt all our messages end-to-end for ever, without any sort of PKI. Forgive me for sounding sceptical! I don't even have any pointer as to what this PowerShell code might be- it's just PowerShell, that's all I know.
I just can't see how this would work, but I'd be very interested if anyone can decipher what this might be and point me in the right direction.