Forced TLS [message #146110] |
Thu, 27 June 2019 12:30  |
ian.bugeja
Messages: 666 Registered: March 2017 Location: Malta
|
|
|
|
"Provide extra option of sending through TLS only (Forced TLS)
Today, Kerio provides two options for TLS:
1, No TLS
2, Opportunistic TLS: Kerio Connect uses TLS (STARTTLS) for sending/receiving emails whenever it is possible. But it is not mandatory, so the email is delivered over unsecure connection if the TLS fails or cannot be established. Kerio falls back to normal unsecure SMTP if TLS cannot be used."
In the future, Kerio should provide 3 options for TLS:
1, No TLS
2, Opportunistic TLS
3, Forced TLS: For each domain, the administrator can define a set of partner-domains for which only TLS-encrypted mail is possible. If Kerio detects unsecure connection for such a partner-domain, it will not send the mail but alert the user. If user send to another domain, the systems works in the opportunistic TLS mode."
|
|
|