Certificates

When ixi-UMS Business with TLS-data encryption shall be used, the respective certificates must be deposited.

Depending on the service (LDAP, SMTP, IMAP), different certificates are used or processed via different methods.

 

SMTP - Sending UMS-messages to the mail server

The certificate transmitted by the mail server is checked for validity by the <%PRODUCTNAME%> against the Windows certificate store "Trusted Root Certification Authorities".

 

LDAP - Query of the user data

The certificate must be imported in the Windows certificate storage under "local computer". The certificate required for the LDAP-connection and the validity of the certificate are checked by Windows.

 

The LDAP-servers stated in the ixi-UMS Business configuration for the LDAP-query must be stated just as in the certificate. In the Windows-domain environment, the FQDN must be stated.

 

With subordinate CA's, please take care that the certificate-chain can be resolved.

 

IMAP - Access to the mailbox

ixi-UMS Business offers IMAPS, but does not check whether the certificate from the mail server is valid.

 

Version 7