05.08.2013 Views

InterScanTM Messaging Security Virtual Appliance - Online Help ...

InterScanTM Messaging Security Virtual Appliance - Online Help ...

InterScanTM Messaging Security Virtual Appliance - Online Help ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Trend Micro InterScan <strong>Messaging</strong> <strong>Security</strong> <strong>Virtual</strong> <strong>Appliance</strong> Administrator’s Guide<br />

10-6<br />

5. Specify the Transport Layer <strong>Security</strong> Settings:<br />

a. Select Enable Incoming Transport Layer <strong>Security</strong>.<br />

This option allows the IMSVA SMTP Server to provide Transport Layer<br />

<strong>Security</strong> (TLS) support to SMTP clients, but does not require that clients use<br />

TLS encryption to establish the connection.<br />

b. Select Only accept SMTP connection by TLS for IMSVA to only accept<br />

secure incoming connections.<br />

This option enables the IMSVA SMTP Server to accept messages only through<br />

a TLS connection.<br />

c. Click a Browse button next to one of the following:<br />

• CA certificate: A CA certificate is usually used for verifying SMTP clients.<br />

However, IMSVA does not verify the client and only uses the CA<br />

certificate for enabling the TLS connection.<br />

Only upload this file if it is provided to you together with the public key.<br />

Otherwise, this file is not mandatory for enabling a TLS connection.<br />

• Private key: The SMTP client encrypts a random number using IMSVA<br />

SMTP server's public key and an encryption key to generate the session<br />

keys.<br />

IMSVA SMTP server then uses the private key to decrypt the random<br />

number in order to establish the secure connection.<br />

This key must be uploaded to enable a TLS connection.<br />

• SMTP server certification: The IMSVA SMTP server's public key made<br />

available to the SMTP clients for generating the session keys.<br />

This key must be uploaded to enable a TLS connection.<br />

d. Click Upload to save the file on the IMSVA server.<br />

e. Select Enable Outgoing Transport Layer <strong>Security</strong> to protect outbound<br />

messages, if desired.<br />

6. Click Save.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!