Configuring E-Mail Proxies; E-Mail Proxy Certificate Authentication - Cisco PIX 500 Series Configuration Manual

Security appliance command line
Hide thumbs Also See for PIX 500 Series:
Table of Contents

Advertisement

Using E-Mail over Clientless SSL VPN

Configuring E-mail Proxies

Clientless SSL VPN supports IMAP4S, POP3S, and SMTPS e-mail proxies.
that apply globally to e-mail proxy users:
Table 37-6
Attributes for E-mail Proxy Users over Clientless SSL VPN
Function
Specifies the previously configured accounting servers to use
with e-mail proxy.
Specifies the authentication method(s) for e-mail proxy
users.
Specifies the previously configured authentication servers to
use with e-mail proxy.
Specifies the previously configured authorization servers to
use with Clientless SSL VPN.
Requires users to authorize successfully to connect.
Identifies the DN of the peer certificate to use as a username
for authorization.
Specifies the name of the group policy to use.
Enables e-mail proxy on the specified interface.
Defines the separator between the e-mail and VPN
usernames and passwords.
Configures the maximum number of outstanding
non-authenticated sessions.
Sets the port the e-mail proxy listens to.
Specifies the default e-mail server.
Defines the separator between the e-mail and server names.
1. With the Eudora e-mail client, SMTPS works only on port 465, even though the default port for SMTPS connections is 988.

E-mail Proxy Certificate Authentication

Certificate authentication for e-mail proxy connections works with Netscape 7x e-mail clients. Other
e-mail clients such as MS Outlook, MS Outlook Express, and Eudora lack the ability to access the
certificate store.
Cisco Security Appliance Command Line Configuration Guide
37-46
Chapter 37
Command
accounting-server-group
authentication
authentication-server-group LOCAL
authorization-server-group
authorization-required
authorization-dn-attributes
default-group-policy
enable
name-separator
outstanding
port
server
server-separator
Configuring Clientless SSL VPN
Table 37-6
lists attributes
Default Value
None
IMAP4S: Mailhost (required)
POP3S Mailhost (required)
SMTPS: AAA
None
Disabled
Primary attribute: CN
Secondary attribute: OU
DfltGrpPolicy
Disabled
":" (colon)
20
IMAP4S:993
POP3S: 995
1
SMTPS: 988
None.
"@"
OL-12172-03

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5500 series

Table of Contents