Exchange Server Forums

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

Opurtunistic TLS

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [Microsoft Exchange 2007] >> Secure Messaging >> Opurtunistic TLS Page: [1]
Login
Message << Older Topic   Newer Topic >>
Limited time MSExchange.org offer! -- 1.Sep.2008 1:00:00 PM
TechGenix and SolarWinds have partnered to provide free copies of SolarWinds Exchange Monitor to all visitors who join the MSExchange.org Forums. SolarWinds Exchange Monitor is a handy desktop dashboard that continuously monitors Microsoft Exchange to deliver real-time insight into Exchange services, mail queue sizes, and host server health. Learn more about Exchange Monitor and the free offer!
Opurtunistic TLS - 30.Apr.2008 6:54:21 PM   
wade001

 

Posts: 35
Joined: 26.Nov.2007
Status: offline
If i have Opurtnistic TLS enabled on my server sending messages outbound and the next HOP / MTA does not use TLS what happens to the message?

The destination MTA is enabled for TLS so when the end user recieves the message is it still encrypt'ed?

Post #: 1
RE: Opurtunistic TLS - 30.Apr.2008 10:08:56 PM   
Elan Shudnow

 

Posts: 546
Joined: 4.Jan.2007
From: Chicago, IL
Status: offline
It just means it attempts to use TLS if it can.  If it can't do TLS, it'll still send the mail.  If you want to force your organization to encrypt mail between eachother, instead of using SMIME you can just enable something called Domain Security which forces TLS communication between the two organizations.

Give this a read:
http://www.shudnow.net/2008/02/10/client-to-server-secure-smtp-connectivity-in-exchange-server-2007/

Domain Security:
http://technet.microsoft.com/en-us/library/bb266978(EXCHG.80).aspx

< Message edited by Elan Shudnow -- 30.Apr.2008 10:10:20 PM >


_____________________________

Elan Shudnow
http://www.shudnow.net

(in reply to wade001)
Post #: 2
RE: Opurtunistic TLS - 30.Apr.2008 10:21:18 PM   
wade001

 

Posts: 35
Joined: 26.Nov.2007
Status: offline
Thanks.  If the server cannot negogiate a TLS session the message is still sent, but is that message now in clear text or does it stay encrypted to its ultimate destination.  In other words with opurtunistic TLS is it s best effort and if any MTA in the chain does not support TLS is that were the encryption stops?

(in reply to Elan Shudnow)
Post #: 3
RE: Opurtunistic TLS - 30.Apr.2008 10:52:02 PM   
Elan Shudnow

 

Posts: 546
Joined: 4.Jan.2007
From: Chicago, IL
Status: offline
http://technet.microsoft.com/en-us/library/bb430753(EXCHG.80).aspx
http://technet.microsoft.com/en-us/library/bb430753(EXCHG.80).aspx

_____________________________

Elan Shudnow
http://www.shudnow.net

(in reply to wade001)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [Microsoft Exchange 2007] >> Secure Messaging >> Opurtunistic TLS Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts