Cisco Cisco Email Security Appliance X1070 Troubleshooting Guide

Page of 10
Comprehensive Setup Guide for TLS on ESA
Document ID: 118844
Contributed by Alvaro Gordon-Escobar, Stephan Bayer, and Robert
Sherwin, Cisco TAC Engineers.
Aug 05, 2015
Contents
Introduction
Prerequisites
     Requirements
     Components Used
Background Information
     Functional Overview and Requirements
        Bring Your Own Certificate
        Update a Current Certificate
Deploy Self-Signed Certificates
     Generate a Self-Signed Certificate and CSR
     Provide the Self-Signed Certificate to a CA
     Upload the Signed Certificate to the ESA
     Specify the Certificate for Use with ESA Services
        Inbound TLS
        Outbound TLS
        HTTPS
        LDAPs
        URL Filtering
     Back Up the Appliance Configuration and Certificate(s)
Activate Inbound TLS
Activate Outbound TLS
Troubleshoot
     Intermediate Certificates
     Enable Notifications for Required TLS Connection Failures
     Locate Successful TLS Communication Sessions in the Mail Logs
Related Information
Introduction
This document describes how to create a certificate for use with Transport Layer Security (TLS), activate
inbound and outbound TLS, and troubleshoot basic TLS issues on the Cisco Email Security Appliance (ESA).
Prerequisites
Requirements
There are no specific requirements for this document.