Solved

I need to enable TLS

Posted on 2008-10-03
6
318 Views
Last Modified: 2008-10-23
I need to enable TLS for incoming and outgoing emails. I have a front end server and back end server. Which server do i need to apply the certificate for on the SMTP virtual directory?
0
Comment
Question by:imagnl
  • 2
  • 2
  • 2
6 Comments
 
LVL 8

Expert Comment

by:sstone55423
ID: 22638775
The MS Exchange team covered this well -- see this blog
http://msexchangeteam.com/archive/2006/10/04/429090.aspx
 
0
 
LVL 8

Accepted Solution

by:
sstone55423 earned 455 total points
ID: 22638781

Here is the SMTP portion that you asked specifically about:
1) Click Start, point to Programs, point to Microsoft Exchange, and then click System Manager.
2) Expand Administrative Groups 1(if appropriate), expand AdministrativeGroup (if appropriate), expand Servers, expand ServerName, and then expand Protocols.
3) Right-click the Secure SMTP VS, and then click Properties.
4) Click the Access tab, and then click Certificate to set up new key certificates and to manage key certificates that are installed for the SMTP virtual server. See the appropriate article for more details on using certificates with Virtual Servers in Exchange Server:

0
 
LVL 9

Expert Comment

by:chingmd
ID: 22638783
depending on the mail flow, it could be both.

If the front end server is the first place incoming external mail hits, and the last place outgoing external mail hits, then it's just the front end server.

If the front end server only works on the incoming external mail, and the backend server does the external SMTP connects outward, you'll need a cert on both of them.

0
Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

 

Author Comment

by:imagnl
ID: 22642824
Well, i followed these instructions and did it on my back end but I dont see the TLS authentication in my headers. My assumption is I need to do it on my front end then.

Also, the certificate for the TLS, should it associate to the FQDN?
0
 

Author Comment

by:imagnl
ID: 22649701
Any more advice on this?
0
 
LVL 9

Expert Comment

by:chingmd
ID: 22661421
Not from me.  I don't have an environment to refer to on this.

0

Featured Post

Threat Intelligence Starter Resources

Integrating threat intelligence can be challenging, and not all companies are ready. These resources can help you build awareness and prepare for defense.

Join & Write a Comment

Check out this infographic on what you need to make a good email signature that will work perfectly for your organization.
Local Continuous Replication is a cost effective and quick way of backing up Exchange server data. The following article describes the steps required to configure Local Continuous Replication. Also, the article tells you how to restore from a backup…
In this video we show how to create an email address policy in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Mail Flow…
The basic steps you have just learned will be implemented in this video. The basic steps are shown to configure an Exchange DAG in a live working Exchange Server Environment and manage the same (Exchange Server 2010 Software is used in a Windows Ser…

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now