JAP -- ANONYMITY & PRIVACY

<- More applications Table of Content Instant Messaging ->

Anonymous e-mail accounts

The reasons as to why using e-mail accounts together with JonDonym may be:

  • You have to use unsave networks like WLAN at the airport or hotel and need a secure connection to your mail provider.
  • Avoid interconnections between your e-mail identity and other data colletions.
  • You would like to have a data retention free email account. (IP addresses of JonDonym mixes are useless for data retention.)
  • You do not want to disclose your location to recipients and mail providers to avoid tracking of your movements.
  • You would like to use a pseudonym without linkability to your real identity (anonymous email account).

If you would like to have an anonymous email account, please create a new account first. Choose an E-Mail address of the form anonymous1234abcd@xx.yy, that is "anonymous" + numbers + letters. If all JonDo users create addresses of this form, they are much less distinguishable. You can use JonDoFox to create the account in the web interface of the new provider. Some recommendations for a mail provider:

  • Posteo.de (German mail provider, 1,- Euro per month, anonymous accounts possible)
  • Lavabit.com (high quality e-mail provider, without IMAP support)
  • Zoho.com (useful for more than one mail account, familie, small office)
  • CryptoHeaven (offers end-2-end encryption with own client, anonymous e-mail and many more features, from $66 per year.)
  • safe-mail.net (Israeli mail provider, anonymous accounts possible)
  • fastmail.fm (free version without SMTP support, premium version full featured)
  • techemail.com (free version only with webinterface and without IMAP/POP/SMTP support, premium version full featured)
  • riseup.net is a service for political activists.
  • nadir.org a second service for political activists.
  • hushmail.com offers some more privacy features, see Keep your E-mail communication.

Security Notes: Informations about long term communication partners can be used to feature out your real identity! If you need a highly anonymous e-mail account to do something – may be for whistleblowing – create a new mail account and use it only for this one job. Delete the account, if the job was done and never use it for other communication partners.

Mozilla Thunderbird configuration

Using an email client like Mozilla Thunderbird is more comfortable for anonymous email accounts than using the overloaded webinterfaces of some mail providers. Using OpenPGP or S/MIME encryption for your email communication is possible and well supported.

For using anonymous mail accounts we recommend the creation of a new Thunderbird profil for separating anonymous and non-anonymous communication. Otherwise you may compromise your anonymous mail accounts by sending a mail without switch your proxy settings to JonDonym.

You can start the prifil manager of Thunderbird at command line or in the DOS box with the command line option -P.

> thunderbird -P You may choose "Create Profile..." and enable the option "Work offline".
profil manager of thunderbird

Security Notes: Because of a serious bug in Thunderbird you can NOT use the account creation wizzard. The wizard does not use the proxy settings for testing the mail server! You can avoid this issues only by starting with Work offline. If the configuration was completed you can switch to online mode.

Proxy Settings for anonymous Profil

At first start with the anonymous profil the account creation wizzard will start too. Because the network connection is not anonymous you have to close the wizzard, configure the proxy and set the the security option.

Open the dialog "Preferences". The proxy settings you will find at "Advanced -> Network -> Connection button ". Set ALL proxies to host=127.0.0.1, port=4001.

Connection Settings

Aditional you have to set some configuration variables in the "Advaced Options" to get a secure configuration. Open the Config Editor for advanced options and modify the value of the following variables. Open "Preferences Dialog -> Advanced -> General" and click on the button "Config Editor". Some options you can set in the "Preferences Dialog" and main menu, too. But I want to keep this tutorial small as possible and list it here.

avoid DNS leaks
Important security settings
network.proxy.socks_remote_dns   true
network.cookie.cookieBehavior2
mail.smtpserver.default.hello_argument localhost
mailnews.start_page.enabledfalse
Remove informations about your prefered language and your regional provenance
mailnews.send_default_charset UTF-8
mailnews.reply_header_type 1
mailnews.reply_header_authorwrote %s
Write outgoing messages in plain text
mail.html_compose false
mailnews.send_plaintext_flowed false
mail.default_html_action 1
Read incoming messages in plain text
Otherwise dangerous e-mail attachments could compromise your computer.
mailnews.display.prefer_plaintext true
rss.display.prefer_plaintext true
mail.inline_attachments false
You may apply these settings in the menu "View", too.
Konfiguration von Thunderbird
Recommendations for OpenPGP/Enigmail
extensions.enigmail.addHeaders false
extensions.enigmail.agentAdditionalParam --no-emit-version --no-comments --display-charset utf-8

If a value was not found in the list (like mail.smtpserver.default.hello_argument), please create a new one of type string.

Create a mail account

After setting the proxy and secure your Thunderbird you can create your mail account in Thunderbird. Open the dialog "Account Settings" and choose "Add Mail Account". A wizzard will ask your for your e-mail address and password. Because of a serious bug in Thunderbird you have to Work offline during account setup. The wizard does not use the proxy settings for mail server tests.

Vorschlag des Thunderbird Wizzard

We do NOT recommend the using of IMAP postboxes because of privacy issues. All messages are stored on the mail server. Additional it takes a lot of JonDonym premium traffic because all messages are downloaded again for each reading. Please switch to a POP3 postbox.

Because you have to work offline the wizard can not feature out the correct settings for your mail server. Click on the "Advanced config" button and edit the settings for POP3 server (incoming mails) and SMTP server (outgoing mails) manually.

Incoming e-mail

You may find the settings for the POP3 server on the website of your mail provider. Enabled SSL encryption.

POP3 server configuration
Outgoing e-mail

You may find the settings for the SMTP server for outgoing emails on the website of your mail provider too. Because of spam protection all premium exit mixes block port 25. You can use port 465 (SMTP-SSL) or port 587 (submission) for sending emails with Thunderbird. Please check whether your mail provider offers these possibilities and replace the settings like shown below.

SMTP server configuration

Switch to "Online"

If all configuration steps were done you can go online with your Thunderbird. Disable "File - Offline - Work offline".

<- More applications Table of Content Instant Messaging ->

 

Download

Stable Version
00.17.001


Beta Version
00.17.024


InfoService

Status of available AN.ON services and information about them.


Aktuell / News

Restrictions for the Dresden (JAP) anonymisation servers
After careful consideration we have decided to restrict the size of downloads over the Dresden (JAP) mixes a little. The reason is to allow a more fair use of scarce resources of our servers especially for users who simply want to surf the Web. more...

 

 
---