cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2404
Views
0
Helpful
1
Replies

Ironport email appliance : can i use a wildcard cert for TLS ?

ERIC LANGUILLET
Level 1
Level 1

Hi all,

We have 2 ironport C170 email appliance. I would like to use a wildcard SSL Cert from Digicert for TLS communication. I have 2 questions about it : 

1/ Is it possible to use wildcard certificat on ironport ?

2/ Is there any known problem with wildcard certificat for TLS use ?

I found 2 (old) post about that :

https://supportforums.cisco.com/discussion/10479161/tls-support-wildcard-cert

http://www.symantec.com/connect/forums/someone-wants-enforce-tls-us-and-use-wildcard-cert

Does someone has experience about it ?

Thanks.

 

1 Reply 1

My experience is that it works fine.

 

If you have multiple domains, you have to make sure that the MX records point to the A record of the box you have certs for.

eg. something like this:

mx domain1.com  smtp.domain2.com

mx domain2.com  smtp.domain2.com

a smtp.domain2.com  x.x.x.x