Re: TLS

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Thanks for your swift response.
Is it possible to enable TLS but not enforce it ?



"Matt Kuzior [MSFT]" <mattku@xxxxxxxxxxxxxxxxxxxx> wrote in message
news:uSrVx5e0GHA.1252@xxxxxxxxxxxxxxxxxxxxxxx
This KB article should help you on your way.
http://support.microsoft.com/kb/829721/en-us

The procedure involves "installing" a certificate on the receiving side.
As
soon as you install the certificate, your server will begin to advertise
"STARTTLS" in response to the EHLO command and can receive TLS encrypted
mail. On the remote side you can require TLS on the send connector.

Repeat the procedure in the reverse direction for two-way TLS.

--
Please do not send email directly to this alias. This alias is for
newsgroup
purposes only.

This posting is provided "AS IS" with no warranties, and confers no
rights.


"DavidP" <bill@xxxxxxxxxxxx> wrote in message
news:elnyxNd0GHA.3440@xxxxxxxxxxxxxxxxxxxxxxx
Ive been asked to setup encypted emails for one of our sister companies
domains.

we have to be able to send and recieve TLS encrypted emails to and from
our
sister company.

We have an ISA2004 server with an exchange 2000 server behind. Ive jsut
bought a certificate for use and am now ready to set it up.

problem is the info out there is pretty vague.

From what i gather, i create a new SMTP connector in exchange and in the
address space add in the sister companies domain name. set for TLS
Then setup a new SMTP virtual server and again tell it to use tls

what do i have to do with the certificate ? i guess install it within
exchange IIS. Does the sister company also have to install this
certificate
?

and then do we have to do it all again at their end ?

thanks in anticipation.





.



Relevant Pages

  • Re: TLS
    ... The procedure involves "installing" a certificate on the receiving side. ... soon as you install the certificate, your server will begin to advertise ... On the remote side you can require TLS on the send connector. ... Ive been asked to setup encypted emails for one of our sister companies ...
    (microsoft.public.exchange.connectivity)
  • Re: Mobile 2003 Radius authentication requirements
    ... So where does the cert com from "using TLS"? ... So you are saying that IAS creates its own Certificate ... order to use 802.1x RADIUS authentication on Mobile 2003 PPC. ... unless I install a personel certificate on ...
    (microsoft.public.internet.radius)
  • LDAP Authentication Problem
    ... Will ich nun mit einem Debian- Client authentifizieren ... TLS trace: SSL_connect:SSLv3 read server hello A ... TLS certificate verification: ... TLS trace: SSL_connect:SSLv3 read server certificate A ...
    (de.comp.sys.novell)
  • Re: TLS
    ... On the receive side, once you install the certificate, it is ... A client connecting to your server may use it but is not required. ... On the sending side, once you enable the "use TLS" setting, ... The procedure involves "installing" a certificate on the receiving side. ...
    (microsoft.public.exchange.connectivity)
  • Re: Entourage 2004 wont collect TLS secure mail from Demon Internet (UK)
    ... > Demon Internet in the UK started offering TLS secure mail collection ... > Entourage X on Mac, but when I upgraded to Entourage 2004, I get the ... > Microsoft supplies instructions for installing root certificates and I ... > However I don't have the certificate to install for Demon Internet. ...
    (microsoft.public.mac.office.entourage)