Hello Guys,
I'm currently experiencing some problems regarding certification and Chain of Trust.
A business partner is going to introduce a new policy forcing any communication between parties' mail servers to use "Mandatory TLS".
They require certificates of an official CA and complete Chain of Trust.
We are running UTM 9 with SMTP Proxy enabled.
The Firewall has an FQDN Hostname set (fw.domain.local), so I can't register it as SAN (AFAIK) and therefore can't ensure the Chain of Trust.
Testing the TLS will always show errors because fw.domain.local has no public signed certificate. Although TLS is working fine the domain couldn't be verified.
My certificate is registered on mail.domain.com and the DNS entry points to the WAN Gateway of the UTM.
I would be very grateful for help and excuse if I selected the wrong group or something.
This thread was automatically locked due to age.