Mail.app encryption not working in El Capitan

I've been encrypting emails between my coworkers and had this working for years on all OSX versions and it's still working on iPhone.


However I bought a new 12" and did a fresh install and now can't get it to work on El Capitan.


My certificate is in keychain access and I can sign emails. I have my coworker's certificate in keychain (saving his email signature). My coworker can sign and encrypt and I can read.


However, I don't have an option to encrypt when sending to my coworker. It's as if Mail.app doesn't recognize his email:


User uploaded file


Besides that, the icons showing encryption itself are not working correctly. For example:


User uploaded file


This is an actual encrypted message from my coworker to me (can't read it in web app). However it's not showing encrypted icon anywhere.


Does anybody else have issues with encryption on El Capitan?

MacBook (Retina, 12-inch, Early 2015), OS X El Capitan (10.11.2)

Posted on Dec 22, 2015 1:44 AM

Reply
18 replies

Dec 22, 2015 8:01 AM in response to BSG75

First, after installing an S/MIME certificate, you must quit and relaunch Mail in order for it to become available.

The address associated with the S/MIME public key must exactly match the address to which you're trying to send the encrypted message, or from which you're trying to send a signed message. If the message is both signed and encrypted, both addresses must match. The matching is case-sensitive: "Foo@Bar.com" does not match "foo@bar.com".

The signing and/or encrypting certificates must be valid: not expired, revoked, self-signed, or signed by an unknown CA. You can check the status of the certificate in Keychain Access.

Dec 23, 2015 7:03 AM in response to BSG75

Please read this whole message before doing anything.

This procedure is a test, not a solution. Don’t be disappointed when you find that nothing has changed after you complete it.

Step 1

The purpose of this step is to determine whether the problem is localized to your user account.

Enable guest logins* and log in as Guest. Don't use the Safari-only “Guest User” login created by “Find My Mac.”

While logged in as Guest, you won’t have access to any of your documents or settings. Applications will behave as if you were running them for the first time. Don’t be alarmed by this behavior; it’s normal. If you need any passwords or other personal data in order to complete the test, memorize, print, or write them down before you begin.

Test while logged in as Guest. You'll have to set up an account in Mail and also import your S/MIME key just as you originally did. Same problem?

After testing, log out of the guest account and, in your own account, disable it if you wish. Any files you created in the guest account will be deleted automatically when you log out of it.

*Note: If you’ve activated “Find My Mac” or FileVault, then you can’t enable the Guest account. The “Guest User” login created by “Find My Mac” is not the same. Create a new account in which to test, and delete it, including its home folder, after testing.

Step 2

The purpose of this step is to determine whether the problem is caused by third-party system modifications that load automatically at startup or login, by a peripheral device, by a font conflict, or by corruption of the file system or of certain system caches.

Please take this step regardless of the results of Step 1.

Disconnect all wired peripherals except those needed for the test, and remove all aftermarket expansion cards, if applicable. Start up in safe mode and log in to the account with the problem.

Note: If FileVault is enabled in OS X 10.9 or earlier, or if a firmware password is set, or if the startup volume is a software RAID, you can’t do this. Ask for further instructions.

Safe mode is much slower to start up and run than normal, with limited graphics performance, and some things won’t work at all, including sound output and Wi-Fi on certain models. The next normal startup may also be somewhat slow.

The login screen appears even if you usually log in automatically. You must know your login password in order to log in. If you’ve forgotten the password, you will need to reset it before you begin.

Test while in safe mode. Same problem?

After testing, restart as usual (not in safe mode) and verify that you still have the problem. Post the results of Steps 1 and 2.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Mail.app encryption not working in El Capitan

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.