Solved

I need to enable TLS

Posted on 2008-10-03
6
351 Views
Last Modified: 2008-10-23
I need to enable TLS for incoming and outgoing emails. I have a front end server and back end server. Which server do i need to apply the certificate for on the SMTP virtual directory?
0
Comment
Question by:imagnl
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
  • 2
6 Comments
 
LVL 8

Expert Comment

by:sstone55423
ID: 22638775
The MS Exchange team covered this well -- see this blog
http://msexchangeteam.com/archive/2006/10/04/429090.aspx
 
0
 
LVL 8

Accepted Solution

by:
sstone55423 earned 455 total points
ID: 22638781

Here is the SMTP portion that you asked specifically about:
1) Click Start, point to Programs, point to Microsoft Exchange, and then click System Manager.
2) Expand Administrative Groups 1(if appropriate), expand AdministrativeGroup (if appropriate), expand Servers, expand ServerName, and then expand Protocols.
3) Right-click the Secure SMTP VS, and then click Properties.
4) Click the Access tab, and then click Certificate to set up new key certificates and to manage key certificates that are installed for the SMTP virtual server. See the appropriate article for more details on using certificates with Virtual Servers in Exchange Server:

0
 
LVL 9

Expert Comment

by:chingmd
ID: 22638783
depending on the mail flow, it could be both.

If the front end server is the first place incoming external mail hits, and the last place outgoing external mail hits, then it's just the front end server.

If the front end server only works on the incoming external mail, and the backend server does the external SMTP connects outward, you'll need a cert on both of them.

0
Ransomware-A Revenue Bonanza for Service Providers

Ransomware – malware that gets on your customers’ computers, encrypts their data, and extorts a hefty ransom for the decryption keys – is a surging new threat.  The purpose of this eBook is to educate the reader about ransomware attacks.

 

Author Comment

by:imagnl
ID: 22642824
Well, i followed these instructions and did it on my back end but I dont see the TLS authentication in my headers. My assumption is I need to do it on my front end then.

Also, the certificate for the TLS, should it associate to the FQDN?
0
 

Author Comment

by:imagnl
ID: 22649701
Any more advice on this?
0
 
LVL 9

Expert Comment

by:chingmd
ID: 22661421
Not from me.  I don't have an environment to refer to on this.

0

Featured Post

Office 365 Advanced Training for Admins

Special Offer:  Buy 1 course, get 2nd free!  Buy the 'Managing Office 365 Identities & Requirements' course w/ Accelerated TestPrep, and automatically receive the 'Enabling Office 365 Services' course FREE!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Learn to move / copy / export exchange contacts to iPhone without using any software. Also see the issues in configuration of exchange with iPhone to migrate contacts.
MS Outlook is a world-class email client application that is mainly used for e-communication globally.  In this article, we will discuss the basic idea about MS Outlook, its advanced features, and types of MS Outlook File formats.
In this video we show how to create a mailbox database in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Servers >> Data…
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question