When ixi-UMS Business with TLS-data encryption shall be used, the respective certificates must be deposited. Depending on the service (LDAP, SMTP, IMAP), different certificates are used or processed via different methods.
SMTP - Sending UMS-messages to the mail serverThe certificate transmitted by the mail server is checked for validity by the <%PRODUCTNAME%> against the Windows certificate store "Trusted Root Certification Authorities".
LDAP - Query of the user dataThe certificate must be imported in the Windows certificate storage under "local computer". The certificate required for the LDAP-connection and the validity of the certificate are checked by Windows.
The LDAP-servers stated in the ixi-UMS Business configuration for the LDAP-query must be stated just as in the certificate. In the Windows-domain environment, the FQDN must be stated.
With subordinate CA's, please take care that the certificate-chain can be resolved.
IMAP - Access to the mailboxixi-UMS Business offers IMAPS, but does not check whether the certificate from the mail server is valid.
|
Version 7