Configuring TLS security for outgoing email messages

To configure TLS security mode for situations when Kaspersky Secure Mail Gateway redirects messages from another server (acts in the Client role):

  1. In the main window of the application web interface, open the management console tree and select the Domains section.
  2. Click any link to open the TLS settings window.
  3. In the Client TLS security level settings group, select one of the following modes of TLS encryption of the connection between Kaspersky Secure Mail Gateway and the server that receives email messages:
    • No TLS Encryption, if you do not want to use TLS encryption of the connection with the server that receives email messages.

      In this case, Kaspersky Secure Mail Gateway redirects all messages in unencrypted form.

    • Attempt TLS Encryption, if you want Kaspersky Secure Mail Gateway to attempt to establish a TLS session with the receiving mail server and, if the receiving server does not support TLS, redirect messages in unencrypted form.
    • Require TLS Encryption and don't verify certificate, if you want Kaspersky Secure Mail Gateway to redirect messages only if the receiving mail server supports TLS, but regardless of the authenticity of its TLS certificate.
    • Require TLS Encryption and verify certificate, if you want Kaspersky Secure Mail Gateway to redirect messages only if the receiving mail server supports TLS, its TLS certificate has been verified, and the certificate name matches the domain name of the server.

      Kaspersky Secure Mail Gateway does not redirect messages when these conditions are not satisfied.

  4. Click the OK button.

See also

Domains and configuration of email routing

Adding a record to the transport map and configuring email routing (transport_map)

Adding a local domain (relay_domain)

Deleting a record from the transport map

Modifying email routing for a domain (transport_map)

About using the TLS protocol in the operation of Kaspersky Secure Mail Gateway

Configuring TLS security for incoming email messages

About the DKIM signature for outgoing messages

Enabling and disabling the DKIM signature for outgoing messages

Preparing to add the DKIM signature to outgoing messages

Adding the DKIM signature to messages from addresses from a specific domain

About using the TLS protocol in the operation of Kaspersky Secure Mail Gateway

Creating a TLS certificate

Deleting a TLS certificate

Preparing a self-signed TLS certificate for import

Preparing to import a TLS certificate signed by a certification authority

Importing the TLS certificate from file

Page top