For Users of ASSP <[email protected]> schreibt: > >With TLS I don't think it's simply possible, since it's an encrypted >connection. ASSP has to be the "man in the middle" - so if you want >transparent TLS, it needs to do TLS handshake with the client and the >MTA it >connects to, decrypt the packages that come from the client and >encrypt them >for the MTA.
However ASSP V2 offers this "transparent proxy" way. V1 does not. >From V2 GUI: If set to "TLS to Proxy" and both peers (client and server) supports TLS, both connection will be moved in to a transparent Proxy mode. All data will be encrypted and unreadable to ASSP. If set to "do TLS", ASSP will be the "man in the middle". ASSP will try to move both connections in to TLS. All data will be readable to ASSP - so all checks could be done. If any of the peers does not support TLS, ASSP will fake this (250-STARTTLS) to the other peer. So it could be possible, that the connection to the client is going in to TLS mode, even if TLS is not supported by the server. ------------------------------------------------------------------------------ SOLARIS 10 is the OS for Data Centers - provides features such as DTrace, Predictive Self Healing and Award Winning ZFS. Get Solaris 10 NOW http://p.sf.net/sfu/solaris-dev2dev _______________________________________________ Assp-user mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/assp-user
