Forced TLS [message #146110] |
Thu, 27 June 2019 12:30  |
ian.bugeja
Messages: 666 Registered: March 2017 Location: Malta
|
|
|
|
"Provide extra option of sending through TLS only (Forced TLS)
Today, Kerio provides two options for TLS:
1, No TLS
2, Opportunistic TLS: Kerio Connect uses TLS (STARTTLS) for sending/receiving emails whenever it is possible. But it is not mandatory, so the email is delivered over unsecure connection if the TLS fails or cannot be established. Kerio falls back to normal unsecure SMTP if TLS cannot be used."
In the future, Kerio should provide 3 options for TLS:
1, No TLS
2, Opportunistic TLS
3, Forced TLS: For each domain, the administrator can define a set of partner-domains for which only TLS-encrypted mail is possible. If Kerio detects unsecure connection for such a partner-domain, it will not send the mail but alert the user. If user send to another domain, the systems works in the opportunistic TLS mode."
|
|
|
|
Re: Forced TLS [message #146717 is a reply to message #146306] |
Tue, 01 October 2019 17:08  |
r.lesch
Messages: 1 Registered: October 2019
|
|
|
|
And what about receiving Mails, Kerio should have a list of Domains, that will be forced to use TLS (banking, Heidelberg/Kodak, The European Union, SAP). we have a lot of customers which will be asked for receiving mails as forced TLS!!
We won´t loose these customers !!
|
|
|