Koozali.org: home of the SME Server

Transport Layer Security question

Offline runded

  • 4
  • +0/-0
Transport Layer Security question
« on: April 28, 2009, 04:00:13 PM »
Hello,

I have the following question posted to us by our bookkeeper:

Do we have TLS (Transport Layer Security)(encryptian) on our email system?  The question is coming up from a bank that is working with us on our bond issue.

I have quickly searched the site (forums, FAQ, and User Documentation) but have not found a clear and simple yes for the answer to this question.  I am sure this has to be yes but want some proof before I tell the book keeper this.  Would anyone be able to point me in the right direction?

Thanks,
Doug

Offline Daniel B.

  • *
  • 1,700
  • +0/-0
    • Firewall Services, la sécurité des réseaux
Re: Transport Layer Security question
« Reply #1 on: April 28, 2009, 04:23:30 PM »
AFAIK, there's no TLS support (either with imap, pop or smtp), only SSL.
C'est la fin du monde !!! :lol:

Offline ricks1950

  • **
  • 40
  • +0/-0
Re: Transport Layer Security question
« Reply #2 on: April 28, 2009, 04:40:29 PM »
Kind of loaded question, as SSL is a Transport Layer Security protocol, but may not be THE TLS that they are looking for.  A more definitive answer requires a more definitive question ...

Offline Daniel B.

  • *
  • 1,700
  • +0/-0
    • Firewall Services, la sécurité des réseaux
Re: Transport Layer Security question
« Reply #3 on: April 28, 2009, 04:45:31 PM »
SSL is not TLS. TLS is a "new version" of SSL (TLS v1 would correspond to SSLv3.1).
One of the main difference is the STARTTLS command
C'est la fin du monde !!! :lol:

Offline ricks1950

  • **
  • 40
  • +0/-0
Re: Transport Layer Security question
« Reply #4 on: April 28, 2009, 04:58:21 PM »
I suspect that the client is looking for TLS specifically, I am familiar with the protocols, but the question did not seem that definitive to me. 

If the question is "do you support encryption at the Transport Layer in your mail system" the answer is yes, we support SSL.

If the question is "do you support TLS v1" the answer is no.