Cisco Cisco Email Security Appliance C160 Mode D'Emploi

Page de 1185
 
25-50
Cisco AsyncOS 8.5.6 for Email User Guide
 
Chapter 25      Authenticating SMTP Sessions Using Client Certificates
  Overview of Certificates and SMTP Authentication
How to Authenticate a User with a Client Certificate
How to Authenticate a User with an SMTP Authentication LDAP Query
How to Authenticate a User with an LDAP SMTP Authentication Query if the 
Client Certificate is Invalid
Table 25-1
How to Authenticate a User with a Client Certificate
Do This
More Info
Step 1
Define a certificate query for your LDAP 
server.
Step 2
Create a certificate-based SMTP authentication 
profile.
Step  3
Configure a listener to use the certificate SMTP 
authentication profile.
Step 4
Modify the RELAYED mail flow policy to 
require TLS, a client certificate, and SMTP 
authentication. 
Table 25-2
How to Authenticate a User with an SMTP Authenticate LDAP Query
Do This
More Info
Step 1
Define an SMTP authentication query for your 
server that uses an allowance query string and 
Bind for the authentication method.
Step 2
Create an LDAP-based SMTP authentication 
profile.
Step 3
Configure a listener to use the LDAP SMTP 
authentication profile.
If the user is not allowed to use LDAP-based SMTP 
authentication for their connection, you can select whether 
the appliance rejects the connection or temporarily allows 
it while logging all activity.
Step 4
Modify the RELAYED mail flow policy to 
require TLS and SMTP authentication. 
Table 25-3
How to Authenticate a User with a Client Certificate or an LDAP SMTP Authentication Query
Do This
More Info
Step 1
Define an SMTP authentication query for your 
server that uses an allowance query string and 
Bind for the authentication method.
Step  2
Define a certificate-based query for your LDAP 
server.