For Users of ASSP  <[email protected]> schreibt:
>
>With TLS I don't think it's simply possible, since it's an encrypted
>connection. ASSP has to be the "man in the middle" - so if you want
>transparent TLS, it needs to do TLS handshake with the client and the
>MTA it
>connects to, decrypt the packages that come from the client and
>encrypt them
>for the MTA.

However ASSP V2 offers this "transparent proxy" way. V1 does not.
>From V2 GUI:


  If set to "TLS to Proxy" and both peers (client and server) supports
TLS, both connection will be moved in to a transparent Proxy mode. All
data will be encrypted and unreadable to ASSP.
  If set to "do TLS", ASSP will be the "man in the middle". ASSP will
try to move both connections in to TLS. All data will be readable to
ASSP - so all checks could be done. If any of the peers does not
support TLS, ASSP will fake this (250-STARTTLS) to the other peer. So
it could be possible, that the connection to the client is going in to
TLS mode, even if TLS is not supported by the server.


------------------------------------------------------------------------------
SOLARIS 10 is the OS for Data Centers - provides features such as DTrace,
Predictive Self Healing and Award Winning ZFS. Get Solaris 10 NOW
http://p.sf.net/sfu/solaris-dev2dev
_______________________________________________
Assp-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/assp-user

Reply via email to