troubleshooting Question


FJMONTANAFlag for United States of America asked on
ExchangeEncryptionMicrosoft Forefront ISA Server
3 Comments1 Solution1645 ViewsLast Modified:
I need to allow one vendor to send email from their MS Exchange server to our MS Exchange 2003 server via TLS, but I’m confused as to what needs to be done…

From reading on this site and others, I see that Exchange 2003 doesn’t allow Opportunistic TLS.  All indications point to setting up an additional SMTP VS and another routing connector.  But because of our current configuration, I’m not sure how best to proceed…

Exchange 2003 is behind Forefront TMG 2010 server that has port 25 open.  On the TMG server, Trend Micro InterScan VirusWall 7 listens on port 25.  It does first level spam filtering, prevents relaying, etc…

TM Interscan VirusWall forwards mail to an internal SMTP virtual server “SERVER-A” running GFI Mail Essential…  Here we do additional spam checking…  From here, mail is passed to the MS Exchange server for delivery….

We have one SMTP VS and one connector on MS Exchange.  The connector passes all external mail back to  SERVER-A for spam checking, adds our company disclaimer and then sends it to the TMG Server where the TM Interscan VirusWall handles sending it out….

Given this scenario, what would be the best way to set up TLS?  Could I just install the certificate on the Forefront TMG server or does it actually have to go on SERVER-A, the mail server or both?  

Thanks very much for your input…

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 3 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 3 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros