37-46
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Chapter 37 Configuring Clientless SSL VPN
Using E-Mail over Clientless SSL VPN
Configuring E-mail Proxies
Clientless SSL VPN supports IMAP4S, POP3S, and SMTPS e-mail proxies.
Table 37-6
lists attributes
that apply globally to e-mail proxy users:
E-mail Proxy Certificate Authentication
Certificate authentication for e-mail proxy connections works with Netscape 7x e-mail clients. Other
e-mail clients such as MS Outlook, MS Outlook Express, and Eudora lack the ability to access the
certificate store.
Table 37-6
Attributes for E-mail Proxy Users over Clientless SSL VPN
Function
Command
Default Value
Specifies the previously configured accounting servers to use
with e-mail proxy.
accounting-server-group
None
Specifies the authentication method(s) for e-mail proxy
users.
authentication
IMAP4S: Mailhost (required)
POP3S Mailhost (required)
SMTPS: AAA
Specifies the previously configured authentication servers to
use with e-mail proxy.
authentication-server-group
LOCAL
Specifies the previously configured authorization servers to
use with Clientless SSL VPN.
authorization-server-group
None
Requires users to authorize successfully to connect.
authorization-required
Disabled
Identifies the DN of the peer certificate to use as a username
for authorization.
authorization-dn-attributes
Primary attribute: CN
Secondary attribute: OU
Specifies the name of the group policy to use.
default-group-policy
DfltGrpPolicy
Enables e-mail proxy on the specified interface.
enable
Disabled
Defines the separator between the e-mail and VPN
usernames and passwords.
name-separator
“:” (colon)
Configures the maximum number of outstanding
non-authenticated sessions.
outstanding
20
Sets the port the e-mail proxy listens to.
port
IMAP4S:993
POP3S: 995
SMTPS: 988
1
1.
With the Eudora e-mail client, SMTPS works only on port 465, even though the default port for SMTPS connections is 988.
Specifies the default e-mail server.
server
None.
Defines the separator between the e-mail and server names.
server-separator
“@”
Summary of Contents for 500 Series
Page 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Page 45: ...P A R T 1 Getting Started and General Information ...
Page 46: ......
Page 277: ...P A R T 2 Configuring the Firewall ...
Page 278: ......
Page 561: ...P A R T 3 Configuring VPN ...
Page 562: ......
Page 891: ...P A R T 4 System Administration ...
Page 892: ......
Page 975: ...P A R T 5 Reference ...
Page 976: ......