today we received a letter from the German (Bavarian) Data Protection Authorities that we have been chosen amongst 2000 other companies in Bavaria for an automatic test of our mailgateways according to our mx-records if they comply the minium requirements of the German Data Protection law.
With the first two we had no Problem, the third one ist not implemented. Now we have to fix it in the next 4 weeks if we do not want to get fined with a max. of 50k Euros.
And guess what? Our Mail Gateway is a UTM V9!
So i am really asking myself if PFS is implemented and how it could be used / activated on the UTM. From the discussion above i was not able to clarify if work sor not. Who knows what Sophos itself is using as a gateway...
If it is not implemented up to now we have to find a solution how to prvide TLS with PFS soon. And i am really scared to answer questions like this from our many UTM customers!