Cisco Cisco Email Security Appliance X1070 User Guide

Page of 548
Chapter 1      Customizing Listeners
1-42
Cisco IronPort AsyncOS 7.1 for Email Advanced Configuration Guide
OL-22164-02
Step 3
Change the TLS setting by entering one of the following choices when you are 
prompted with the following questions: 
Do you want to allow encrypted TLS connections?
1. No
2. Preferred
3. Required
[1]> 3
You have chosen to enable TLS. Please use the 'certconfig' command to 
ensure that there is a valid certificate configured.
Note that this example asks you to use the 
certconfig
 command to ensure 
that there is a valid certificate that can be used with the listener. If you have 
not created any certificates, the listener uses the demonstration certificate that 
is pre-installed on the appliance. You may enable TLS with the demonstration 
certificate for testing purposes, but it is not secure and is not recommended 
for general use. Use the 
listenerconfig -> edit -> certificate
 command 
to assign a certificate to the listener.
Once you have configured TLS, the setting will be reflected in the summary 
of the listener in the CLI: 
Name: Inboundmail
Type: Public
Interface: PublicNet (192.168.2.1/24) TCP Port 25
Protocol: SMTP
Default Domain:
Max Concurrency: 1000 (TCP Queue: 50)