Cisco Cisco Email Security Appliance C160 Mode D'Emploi

Page de 1210
 
19-12
Cisco AsyncOS 9.0 for Email User Guide
 
Chapter 19      S/MIME Security Services
  Verifying, Decrypting, or Decrypting and Verifying Incoming Messages using S/MIME
How to Verify, Decrypt, or Decrypt and Verify Incoming Messages Using 
S/MIME
Note
If you want to perform S/MIME verification, decryption, or decryption and verification using CLI, use 
the 
listenerconfig
 > 
hostaccess
 command. See the CLI inline help for more details.
Setting Up Private Keys for Decrypting Incoming Messages
You must add your S/MIME certificate to the appliance for decrypting the messages. You can use the 
Certificates page on web interface or 
certconfig
 command in CLI.
Before You Begin
Make sure that the certificate you are planning to import meets the requirements described in RFC 5750: 
Secure/Multipurpose Internet Mail Extensions (S/MIME) Version 3.2 - Certificate Handling.
Procedure
Step 1
Click Network > Certificates.
Step 2
Click Add Certificate.
Step 3
Choose Import Certificate.
Step 4
Enter the path to the certificate file on your network or local machine.
Step 5
Enter the password for the file. 
Steps
Do This
More Info
Step 1
Depending on your requirements, do the 
following:
For S/MIME decryption, add your 
S/MIME certificate to the appliance for 
decrypting messages. 
For S/MIME verification, add the public 
key of the sender’s S/MIME certificate to 
the appliance for verifying messages.
For S/MIME decryption and verification, 
add your S/MIME certificate and the 
public key of the sender’s S/MIME 
certificate to the appliance.
See
Step 2
Configure your mail flow policies to verify, 
decrypt, or decrypt and verify incoming 
messages using S/MIME.
See 
.
Step 3
(Optional) Define the action that the Email 
Security appliance takes on decrypted or 
verified messages.
See