This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SPX with Exchange 2010 for internal encryption

Hi,

we use the email appliance for several years now and haven't used the SPX before as we used PGP. Now we want to provide mail encryption for all with Sophos SPX. We want to be able to also encrypt mails from internal to internal. (mailbox to mailbox)

As we have a gateway solution implemented yet, we now have the problem to get the internal traffic also over one SPX appliance. How can this achieved?

I have no possibility to configure the send connector to route all mails with header "confidential" to the internal SPX-appliance. And if I route all traffic over the appliance, how do I avoid bounces?

Is there a white paper with a szenario for internal encryption and not only gateway encryption?

Any hint is welcome ;)

Thanks in advance

Torsten

:41481


This thread was automatically locked due to age.
Parents
  • Hi Torsten,

    here's just my thought, I do not know if this scenario will be work, never tried before.

    Since the SEA only encrypt the outbound SMTP message, then you will need the SEA to sit between the client and the mail server. I don't think you can use the existing SEA that act as the email gateway to do the internal encryption.

    CLIENT ------------ SEA ------------ MAIL SERVER

    You need to configure the mail client to send using SMTP.

    On the SEA you need to configure is as open relay SMTP, probably by adding the IP CLIENT to Internal Mail Hosts list or the Trusted Relay List.

    Then you you would also need to set the Outbound Mail Proxy, and set your MAIL Server as the Mail Proxy.

    And since you use Exchange and assumed you're using microsoft outlook, the client would probably would lose some feature if you change from using RPC to SMTP. :-( .

    Regards,

    Antonius A

    :41499
Reply
  • Hi Torsten,

    here's just my thought, I do not know if this scenario will be work, never tried before.

    Since the SEA only encrypt the outbound SMTP message, then you will need the SEA to sit between the client and the mail server. I don't think you can use the existing SEA that act as the email gateway to do the internal encryption.

    CLIENT ------------ SEA ------------ MAIL SERVER

    You need to configure the mail client to send using SMTP.

    On the SEA you need to configure is as open relay SMTP, probably by adding the IP CLIENT to Internal Mail Hosts list or the Trusted Relay List.

    Then you you would also need to set the Outbound Mail Proxy, and set your MAIL Server as the Mail Proxy.

    And since you use Exchange and assumed you're using microsoft outlook, the client would probably would lose some feature if you change from using RPC to SMTP. :-( .

    Regards,

    Antonius A

    :41499
Children
No Data