Note: Forums will be making significant UX changes to address key usability improvements surrounding search, discoverability and navigation. To learn more about these changes please visit the announcement which can be found HERE.
TLS connection between Exchange 2010 and Exchange 2007 servers

Answered TLS connection between Exchange 2010 and Exchange 2007 servers

  • Friday, December 28, 2012 8:47 AM
     
     

    Hello,

    I'm looking for a procedure to setup TLS between Exchange 2010 and Exchange 2007 servers (between 2 different organization) . Can someone help?


    Karthik R

All Replies

  • Sunday, December 30, 2012 3:49 PM
     
     Answered

    Hi RKART

    This should help you  Configure mutual Transport Layer Security (TLS)


    Fred Chamanara | Advanced Agile Technology LLC | Hire us | please mark "Propose As Answer" if this post helped.

  • Sunday, December 30, 2012 8:11 PM
     
     Answered
    On Fri, 28 Dec 2012 08:47:08 +0000, RKART wrote:
     
    >I'm looking for a procedure to setup TLS between Exchange 2010 and Exchange 2007 servers (between 2 different organization) . Can someone help?
     
    You shouldn't have to do anything --both versions of Exchange offer
    TLS and they'll both use it when they send e-mail to a MTA if STARTTLS
    is seen in the response to the EHLO they send.
     
    ---
    Rich Matheisen
    MCSE+I, Exchange MVP
     

    --- Rich Matheisen MCSE+I, Exchange MVP
  • Monday, December 31, 2012 7:32 AM
    Moderator
     
     Answered

    Hello Karthik,

    In Exchange 2007, it has Mutual TLS and Opportunistic TLS.

    With Opportunistic TLS, Exchange Server 2007 tries to secure the message flow with other Exchange Servers or foreign messaging systems. it also tries to enable a TLS session with the other messaging system in the form of an anonymous TLS request.

    So you no need to do anything, if you need both Exchange Servers that are involved in the message transport process will check the TLS certificate before the connection is established, you can follow fred's suggestion to enable Mutul TLS, this way the sender and receiver will authenticate one another before they send the data.

    Thanks,

    Evan Liu

    TechNet Subscriber Support in forum

    If you have any feedback on our support, please contact tnmff@microsoft.com


    Evan Liu
    TechNet Community Support

  • Sunday, January 06, 2013 2:12 PM
    Moderator
     
     

    Hi Karthik,

    Any updates on this issue?

    Thanks,

    Evan Liu

    TechNet Subscriber Support in forum

    If you have any feedback on our support, please contact tnmff@microsoft.com


    Evan Liu
    TechNet Community Support