[Webinar] Streamline your web hosting managementRegister Today

x
?
Solved

TLS Email Encryption

Posted on 2010-04-07
4
Medium Priority
?
781 Views
Last Modified: 2012-05-09
Hi,

Is it possible to setup opportunistic TLS for all inbound and outbound smtp traffic on an exchange 2003 cluster.

I would ideally like all communications to occur over TLS but if TLS is not enabled at the remote email server that the email will be sent in deault smtp mode (clear text) i.e. cooms will not fail

Thanks,
John.
0
Comment
Question by:davystocks
  • 2
4 Comments
 
LVL 6

Expert Comment

by:J P
ID: 30084376
sorry mate, opportunistic tls is not supported in exchange 2003
0
 
LVL 4

Author Comment

by:davystocks
ID: 30099685
Hi,

Thanks for your feedback. Does this mean that you have to setup TLS with each domain that requires communications over TLS? Would you happen to have a document/link on setting this up bearing in mind that we currently use a smart host in our "connector"

Thanks,
John.
0
 
LVL 6

Accepted Solution

by:
J P earned 2000 total points
ID: 30159567
hi mate,

-what no support for opportunistic tls means is there is no failback. that is, if you setup tls outbound and tls is not available at the reciever end, then you should get an ndr back, there is no attempt to deliver via regular non-tls. likewise if you setup tls on your end for inbound, all messages must deliver to you via tls because you going to be knocking back the regular ones. so opportunistic tls refers to the ability to accept tls first and also accept non-tls second as well

-then links given does cover pretty much what is needed in terms of config
-tough if using a smarthost in connector, first confirm the host supports tls before activating

good luck
0

Featured Post

Making Bulk Changes to Active Directory

Watch this video to see how easy it is to make mass changes to Active Directory from an external text file without using complicated scripts.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article will help to fix the below errors for MS Exchange Server 2016 I. Certificate error "name on the security certificate is invalid or does not match the name of the site" II. Out of Office not working III. Make Internal URLs and Externa…
What is the biggest problem in managing an exchange environment today? It is the lack of backups, disaster recovery (DR) plan, testing of the DR plan or believing that it won’t happen to us.
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
how to add IIS SMTP to handle application/Scanner relays into office 365.
Suggested Courses

590 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question